Splunk Search

How do I display 20% as an integer and still display as 20%

heamik
Engager

If I execute...

| stats avg(mem_free_percent) as mfp by Region
| fieldformat mfp=round(mfp, 1)."%"

It will display values like 20.5% However it breaks my radial dials I am assuming because the value gets converted to a string value. "fieldformat mfp=round(mfp, 1)" by itself still works in radial dials however 20.5% gets displayed as "20.5".

How do I add the % sign and still maintain the integer value?

Thanks

-Mike

Labels (2)
Tags (3)
0 Karma

rnowitzki
Builder

Hi @heamik,

with fieldformat you should be good. It's exactly made to keep the original type of data.

WIth this simple sample I could not reproduce your issue. After using fieldformat you can still calculate with mfp

|  makeresults 
| eval mfp=50.23
| fieldformat mfp=round(mfp, 1)."%"
| eval mfp=mfp+10.45

 

You could check what Splunk "thinks" the mfp is with | eval mfp_type = typeof(mfp)
Maybe something prior to the fieldformat already transforms it to a string?

You could try | eval mfp = tonumber(mfp) 

Hope it helps.
BR
Ralph


--
Karma and/or Solution tagging appreciated.
0 Karma
Get Updates on the Splunk Community!

Monitoring Postgres with OpenTelemetry

Behind every business-critical application, you’ll find databases. These behind-the-scenes stores power ...

Mastering Synthetic Browser Testing: Pro Tips to Keep Your Web App Running Smoothly

To start, if you're new to synthetic monitoring, I recommend exploring this synthetic monitoring overview. In ...

Splunk Edge Processor | Popular Use Cases to Get Started with Edge Processor

Splunk Edge Processor offers more efficient, flexible data transformation – helping you reduce noise, control ...