Splunk Search

Splunk dashboard

splunkuser_tr
Observer

HI Team ,

i need to edit existing dashboard and need to display :

time taken for 90, 97 and 99 percentile of transaction to show in dashboard.

splunk logs look like:

tranId=testi1234556 cid=TEST-VALIDATATION-20200946101122 appId=34567usxpnsow c.a.g.t.c.http.HttpConnection.receive log="External connection ran 283 ms"

 

Please help on this asap.

Labels (1)
0 Karma

richgalloway
SplunkTrust
SplunkTrust
What part do you need help with? Editing a dashboard or something else? What have you tried so far?
---
If this reply helps you, Karma would be appreciated.
0 Karma

splunkuser_tr
Observer

Hi ,

 

I need ur help to form the query , to show the time taken for 90, percentile of transaction to show in dashboard from the logs given.

Please help me with the query.

0 Karma

richgalloway
SplunkTrust
SplunkTrust

Perhaps this will help

| rex "connection ran (?<runTime>\d+)"
| stats perc90(runTime) as perc90,perc97(runTime) as perc97,perc99(runTime) as perc99
---
If this reply helps you, Karma would be appreciated.
0 Karma
Get Updates on the Splunk Community!

Your Guide to Splunk Digital Experience Monitoring

A flawless digital experience isn't just an advantage, it's key to customer loyalty and business success. But ...

Data Management Digest – November 2025

  Welcome to the inaugural edition of Data Management Digest! As your trusted partner in data innovation, the ...

Upcoming Webinar: Unmasking Insider Threats with Slunk Enterprise Security’s UEBA

Join us on Wed, Dec 10. at 10AM PST / 1PM EST for a live webinar and demo with Splunk experts! Discover how ...