Splunk Search

How do I use the reverse command to change the order of my table?

ckunath
Communicator

Hello,

I currently have a table that is ordered by time, ascending. It looks like this:

Date | Action
9pm  | Order finished
8pm  | Processing order step 3
8pm  | Processing order step 2
8pm  | Processing order step 1
7pm  | Start processing order

When I try to sort by time descending, I however get this:

Date | Action
7pm  | Start processing order
8pm  | Processing order step 3
8pm  | Processing order step 2
8pm  | Processing order step 1
9pm  | Order finished

As you can see, the events at 8pm did not change their order, therefore making it harder to read the table.
How can I correctly "turn the table around"? Any help is appreciated.

0 Karma
1 Solution

cmerriman
Super Champion

use |reverse to flip it the other way

View solution in original post

cmerriman
Super Champion

use |reverse to flip it the other way

ckunath
Communicator

Oh boy, i feel stupid for not finding it myself. Thank you!

0 Karma
Get Updates on the Splunk Community!

Developer Spotlight with Brett Adams

In our third Spotlight feature, we're excited to shine a light on Brett—a Splunk consultant, innovative ...

Index This | What can you do to make 55,555 equal 500?

April 2025 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with this ...

Say goodbye to manually analyzing phishing and malware threats with Splunk Attack ...

In today’s evolving threat landscape, we understand you’re constantly bombarded with phishing and malware ...