Splunk Search

How do I create a stacked bar chart?

sathiyasun
Explorer

alt text

alt text

0 Karma
1 Solution

somesoni2
Revered Legend

Try like this

your current search giving fields Date, Status
| chart count over Date by Status

Select Stacked in chart option.

View solution in original post

0 Karma

somesoni2
Revered Legend

Try like this

your current search giving fields Date, Status
| chart count over Date by Status

Select Stacked in chart option.

0 Karma

sathiyasun
Explorer

Appreciate it. That works!

0 Karma

sathiyasun
Explorer

want the status field value in chart with stack.

0 Karma
Get Updates on the Splunk Community!

Splunk Lantern | Spotlight on Security: Adoption Motions, War Stories, and More

Splunk Lantern is a customer success center that provides advice from Splunk experts on valuable data ...

Splunk Cloud | Empowering Splunk Administrators with Admin Config Service (ACS)

Greetings, Splunk Cloud Admins and Splunk enthusiasts! The Admin Configuration Service (ACS) team is excited ...

Tech Talk | One Log to Rule Them All

One log to rule them all: how you can centralize your troubleshooting with Splunk logs We know how important ...