- Mark as New
- Bookmark Message
- Subscribe to Message
- Mute Message
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
splunkuser320
Path Finder
04-12-2023
07:22 PM
1 Solution
- Mark as New
- Bookmark Message
- Subscribe to Message
- Mute Message
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content

gcusello

SplunkTrust
04-12-2023
11:37 PM
Hi @splunkuser320 ,
as @ITWhisperer said, if you could share your code, it's easier to help you, anyway, supposing your code, you could use something like this:
<your_search>
| timechart count BY host
| eval
failed=if(isnull(failed),0,failed),
success=if(isnull(success),0,success)
Ciao.
Giuseppe
- Mark as New
- Bookmark Message
- Subscribe to Message
- Mute Message
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content

gcusello

SplunkTrust
04-12-2023
11:37 PM
Hi @splunkuser320 ,
as @ITWhisperer said, if you could share your code, it's easier to help you, anyway, supposing your code, you could use something like this:
<your_search>
| timechart count BY host
| eval
failed=if(isnull(failed),0,failed),
success=if(isnull(success),0,success)
Ciao.
Giuseppe
- Mark as New
- Bookmark Message
- Subscribe to Message
- Mute Message
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
ITWhisperer

SplunkTrust
04-12-2023
10:49 PM
Please share your current SPL, preferably in a code block </>
