Splunk Search

How to combine the text values in different columns and then visualize them?

reverse
Contributor
**C1    C2  C3**
    A    X  34
    B    Y  39
    C    Z  60

Since i want to project this on a chart .. i want to combine text values of C1 and C2 and then visualize it.
Please guide

0 Karma
1 Solution

niketn
Legend

Try the following

| eval key=C1."-".C2
| chart sum(C3) as C3 by C1 key
____________________________________________
| makeresults | eval message= "Happy Splunking!!!"

View solution in original post

niketn
Legend

Try the following

| eval key=C1."-".C2
| chart sum(C3) as C3 by C1 key
____________________________________________
| makeresults | eval message= "Happy Splunking!!!"

reverse
Contributor

There is a date column too

C0
JAN 1
JAN 2
JAN 3

0 Karma
Get Updates on the Splunk Community!

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...

Splunk MCP & Agentic AI: Machine Data Without Limits

Discover how the Splunk Model Context Protocol (MCP) Server can revolutionize the way your organization uses ...