Splunk Search

Does tstats command work in Hunk?

jwalzerpitt
Influencer

I checked the Hunk documentation and it does not list 'tstats' as a command that's not supported, but when I try and run the following search:

| tstats count WHERE index=fwlogs by _time span=15m

I always get the message that states "No results found. Try expanding the time range", no matter what I set the time picker to (1 day, 7 days, etc).

Does tstats work in Hunk?

Thx

0 Karma
1 Solution

rdagan_splunk
Splunk Employee
Splunk Employee

Yes tstats is supported since Hunk 6.4.
Here is the link to the docs that describes what has to be done: http://docs.splunk.com/Documentation/Splunk/latest/HadoopAnalytics/Datamodelacceleration

View solution in original post

rdagan_splunk
Splunk Employee
Splunk Employee

Yes tstats is supported since Hunk 6.4.
Here is the link to the docs that describes what has to be done: http://docs.splunk.com/Documentation/Splunk/latest/HadoopAnalytics/Datamodelacceleration

jwalzerpitt
Influencer

Thx for the info

0 Karma
Get Updates on the Splunk Community!

AI for AppInspect

We’re excited to announce two new updates to AppInspect designed to save you time and make the app approval ...

App Platform's 2025 Year in Review: A Year of Innovation, Growth, and Community

As we step into 2026, it’s the perfect moment to reflect on what an extraordinary year 2025 was for the Splunk ...

Operationalizing Entity Risk Score with Enterprise Security 8.3+

Overview Enterprise Security 8.3 introduces a powerful new feature called “Entity Risk Scoring” (ERS) for ...