Splunk Search

Is there any way to show the column in different color for bar graph, where count is more than certain level.

cadrija
Path Finder

I need to show a bar graph having error login count from different IPs over time.

User wants  me to show the columns in red where the login count is => 6 

For login count < 6 columns in green.

How can I achieve this, kindly help.

Labels (1)
0 Karma

ITWhisperer
SplunkTrust
SplunkTrust

Bar graphs display a number of series of values. Each series can be a different colour. If you split your results up so that for each ip you have counts greater than 5 and another one for counts less than 6, you could then colour them differently. You can't change the colour of the series midway through

Short answer: it can't be achieved in the way you want (or rather your user wants)

cadrija
Path Finder

Thanks for the help @ITWhisperer 

0 Karma
Get Updates on the Splunk Community!

Feel the Splunk Love: Real Stories from Real Customers

Hello Splunk Community,    What’s the best part of hearing how our customers use Splunk? Easy: the positive ...

Data Management Digest – November 2025

  Welcome to the inaugural edition of Data Management Digest! As your trusted partner in data innovation, the ...

Splunk Mobile: Your Brand-New Home Screen

Meet Your New Mobile Hub  Hello Splunk Community!  Staying connected to your data—no matter where you are—is ...