Splunk Search

How to perform mathematical operations on two saved search results

Splunk_321
Path Finder

I have two saved search reports with below outputs.

saved search 1 (totalCountByClient) giving client_name, totalCount as output

saved search 2 (monitoringCountByClient) giving client_name, monitoringCount as output

Want to show results of (monitoringCount/totalCount*100) by client_name as a timechart.

Any help would be appreciated.

Labels (4)
0 Karma

ITWhisperer
SplunkTrust
SplunkTrust

Use the loadjob command to retrieve the results from the saved searches

0 Karma
Get Updates on the Splunk Community!

Splunk + ThousandEyes: Correlate frontend, app, and network data to troubleshoot ...

 Are you tired of troubleshooting delays caused by siloed frontend, application, and network data? We've got a ...

Splunk Observability for AI

Don’t miss out on an exciting Tech Talk on Splunk Observability for AI!Discover how Splunk’s agentic AI ...

🔐 Trust at Every Hop: How mTLS in Splunk Enterprise 10.0 Makes Security Simpler

From Idea to Implementation: Why Splunk Built mTLS into Splunk Enterprise 10.0  mTLS wasn’t just a checkbox ...