Splunk Search

How to find values that are larger than average?

splunkuser320
Path Finder

Hi,  I am trying to create a query to get all values that are larger than the average value. I have a file size field and I need to find all the files that are larger than the average file size. 

Labels (1)
Tags (2)
0 Karma

ITWhisperer
SplunkTrust
SplunkTrust
| eventstats avg(filesize) as avg_filesize
| where filesize > avg_filesize
Get Updates on the Splunk Community!

Data Management Digest – November 2025

  Welcome to the inaugural edition of Data Management Digest! As your trusted partner in data innovation, the ...

Splunk Mobile: Your Brand-New Home Screen

Meet Your New Mobile Hub  Hello Splunk Community!  Staying connected to your data—no matter where you are—is ...

Introducing Value Insights (Beta): Understand the Business Impact your organization ...

Real progress on your strategic priorities starts with knowing the business outcomes your teams are delivering ...