Splunk Search

Looking for date wise Incidents resolved count by each user

Gousa
New Member

i am trying to pull incidents resolved by each user in date wise . can any one help me how to form the below table with count

User Name10/4/202110/5/202110/6/2021Grand Total
AAAA 3 3
BBBBB2  2
CCCCC31 4
DDD1  1
Labels (3)
0 Karma

PickleRick
SplunkTrust
SplunkTrust

Use timechart with span of one day by user to get a timeseries. Then transpose the results. Finally you can do addtotals.

0 Karma
Get Updates on the Splunk Community!

Enter the Splunk Community Dashboard Challenge for Your Chance to Win!

The Splunk Community Dashboard Challenge is underway! This is your chance to showcase your skills in creating ...

.conf24 | Session Scheduler is Live!!

.conf24 is happening June 11 - 14 in Las Vegas, and we are thrilled to announce that the conference catalog ...

Introducing the Splunk Community Dashboard Challenge!

Welcome to Splunk Community Dashboard Challenge! This is your chance to showcase your skills in creating ...