Splunk Search

Looking for date wise Incidents resolved count by each user

Gousa
New Member

i am trying to pull incidents resolved by each user in date wise . can any one help me how to form the below table with count

User Name10/4/202110/5/202110/6/2021Grand Total
AAAA 3 3
BBBBB2  2
CCCCC31 4
DDD1  1
Labels (3)
0 Karma

PickleRick
SplunkTrust
SplunkTrust

Use timechart with span of one day by user to get a timeseries. Then transpose the results. Finally you can do addtotals.

0 Karma
Get Updates on the Splunk Community!

Data Management Digest – November 2025

  Welcome to the inaugural edition of Data Management Digest! As your trusted partner in data innovation, the ...

Splunk Mobile: Your Brand-New Home Screen

Meet Your New Mobile Hub  Hello Splunk Community!  Staying connected to your data—no matter where you are—is ...

Introducing Value Insights (Beta): Understand the Business Impact your organization ...

Real progress on your strategic priorities starts with knowing the business outcomes your teams are delivering ...