Splunk Search

How to get the count of the value and displaying it as a number in a bar graph?

rkaakaty
Path Finder

Hi,

I am trying to count how many certain TYPES there are in the data I am using.

For example, there are three types

  • Confirmed
  • Likely
  • Potential

I want the graph to look something like this:

alt text

This is my search so far:

eventtype=qualys_vm_detection_event STATUS!="FIXED"
| fillnull value=- PROTOCOL
| table TYPE, QID
| head 10
0 Karma
1 Solution

cmerriman
Super Champion

can you just add a |stats count by TYPE
and visualize as a column chart?

View solution in original post

cmerriman
Super Champion

can you just add a |stats count by TYPE
and visualize as a column chart?

Get Updates on the Splunk Community!

Extending Observability Content to Splunk Cloud

Watch Now!   In this Extending Observability Content to Splunk Cloud Tech Talk, you'll see how to leverage ...

More Control Over Your Monitoring Costs with Archived Metrics!

What if there was a way you could keep all the metrics data you need while saving on storage costs?This is now ...

New in Observability Cloud - Explicit Bucket Histograms

Splunk introduces native support for histograms as a metric data type within Observability Cloud with Explicit ...