Splunk Search

How to group the data by date and type, so each entry would count as 1, from SQL Datasource?

Bbyers3
New Member

I have a date in my SQL database that I want to group the data by that date and Type. The Year/Month/Week/Day each entry would count as 1.

Example Dates

1/2/2018 - P
1/5/2018 - P
1/10/2018 - P
1/15/2018 - V
1/20/2018 - V
1/28/2018 - V

Should Produce

Jan - 6
Week 1 - 2P
Week 2 - 1V 1P
Week 3 - 1V
Week 4 - 1V
Tags (2)
0 Karma
Get Updates on the Splunk Community!

Splunk Observability for AI

Don’t miss out on an exciting Tech Talk on Splunk Observability for AI! Discover how Splunk’s agentic AI ...

[Puzzles] Solve, Learn, Repeat: Dereferencing XML to Fixed-length events

This challenge was first posted on Slack #puzzles channelFor a previous puzzle, I needed a set of fixed-length ...

Stay Connected: Your Guide to December Tech Talks, Office Hours, and Webinars!

What are Community Office Hours? Community Office Hours is an interactive 60-minute Zoom series where ...