Splunk Search

Creating a 2-dimensional chart

omend
Path Finder

Hi all,

I would like to create a unique chart displaying the working hours of a specific worker.

  • The x axis should be dates (each dot represents a specific day)
  • The y axis should be hours of the day in breaks of 15 minutes (07:00,07:15,07:30...)

and the data I have is for each date and time, whether the user was logged on or not (represented by 1 and 0).

I would like to create a chart that shows floating columns that are filled whenever the user was logged on, and empty when he wasn't.

Is that something that can be done in splunk?

Thank you very much.

Tags (3)
0 Karma

GKC
Explorer

I would recommend that you took a look through the first chapters of this pdf book. I am sure you will find similar searches to the one you want to use there.

You can download it from http://bit.ly/V5IAQI

0 Karma

domgkc
Explorer
0 Karma

omend
Path Finder

The link is broken. Could you please send me another one?

Thanks!

0 Karma

Ayn
Legend

I don't think this can be done using existing modules in Splunk.

0 Karma
Get Updates on the Splunk Community!

Splunk + ThousandEyes: Correlate frontend, app, and network data to troubleshoot ...

 Are you tired of troubleshooting delays caused by siloed frontend, application, and network data? We've got a ...

Splunk Observability for AI

Don’t miss out on an exciting Tech Talk on Splunk Observability for AI!Discover how Splunk’s agentic AI ...

🔐 Trust at Every Hop: How mTLS in Splunk Enterprise 10.0 Makes Security Simpler

From Idea to Implementation: Why Splunk Built mTLS into Splunk Enterprise 10.0  mTLS wasn’t just a checkbox ...