Splunk Search
Highlighted

How to get the count of the value and displaying it as a number in a bar graph?

Explorer

Hi,

I am trying to count how many certain TYPES there are in the data I am using.

For example, there are three types

  • Confirmed
  • Likely
  • Potential

I want the graph to look something like this:

alt text

This is my search so far:

eventtype=qualys_vm_detection_event STATUS!="FIXED"
| fillnull value=- PROTOCOL
| table TYPE, QID
| head 10
0 Karma
Highlighted

Re: How to get the count of the value and displaying it as a number in a bar graph?

Super Champion

can you just add a |stats count by TYPE
and visualize as a column chart?

View solution in original post