New to dbs and Splunk.
Querying against a CSV file of buy events. Want to return top 10 Users by purchase totals.
source="file_name.csv" | sort by userid | stats sum(price) as BuyerTotals by userId |rename userId as User | sort -num(BuyerTotals) by User limit=10
A sanity check indicates my returned values are correct.
Can anyone suggest a more elegant way of scripting?