Splunk Search

How to pivot convert in Splunk?

zoe
Path Finder

Hi, 

I habe a table after using stats:

| stats values(durationSum) as duration by Fauf Station. How can I convert it to a table with only one line in such a format:

Fauf duration_Station1 duration_Station2, duration_Station7, duration_Station10

zoe_0-1658220188640.png

Thanks for helping in advance!

 

 

Labels (3)
0 Karma
1 Solution

zoe
Path Finder
0 Karma

ITWhisperer
SplunkTrust
SplunkTrust
| xyseries Fauf Station duration
0 Karma

zoe
Path Finder

Thank! it helps!

0 Karma
Get Updates on the Splunk Community!

Manual Instrumentation with Splunk Observability Cloud: The What and Why

If you've ever worked with distributed systems, you’ve likely felt the pain of a frontend throwing errors, ...

Full-Stack Security in Financial Services: AppDynamics, Cisco Secure Application, and ...

Full-Stack Security in Financial Services: AppDynamics, Cisco Secure Application, and Splunk ES Protecting a ...

It's Customer Success Time at .conf25

Hello Splunkers,   Ready for .conf25? The customer success and experience team is and can’t wait to see you ...