Splunk Search

How to group certain values in a column in a table?

aaa2324
Explorer

I want to group the below table as below, I have a column we’re numbers are in all series, I want to segregate 100 series separately and 400 series separately and get the count  kindly advise on the query 

num1   Count of 100series   Count of 400ser

100        100                                 400

123         123                                402

400

402

Labels (1)
0 Karma

gcusello
SplunkTrust
SplunkTrust

Hi @aaa2324,

one question: the above table is done using a search or they are the waw data?

if it's the result of a search, please share it.

Ciao.

Giuseppe

0 Karma

aaa2324
Explorer

Hi Team, these are fetched from raw data 

0 Karma

gcusello
SplunkTrust
SplunkTrust

Hi @aaa2324,

could you share the raw data ?

Ciao.

Giuseppe

0 Karma
Get Updates on the Splunk Community!

See just what you’ve been missing | Observability tracks at Splunk University

Looking to sharpen your observability skills so you can better understand how to collect and analyze data from ...

Weezer at .conf25? Say it ain’t so!

Hello Splunkers, The countdown to .conf25 is on-and we've just turned up the volume! We're thrilled to ...

How SC4S Makes Suricata Logs Ingestion Simple

Network security monitoring has become increasingly critical for organizations of all sizes. Splunk has ...