Splunk Search

Sum and average of values present in two columns of an output

yashwanth_g_pra
Observer

Hi All,

I would like to get the average for Failed_Attempts and Passed_Authentications of the below table,

_time Failed_Attempts Passed_Authentications
2017-10-09 12345 28800
2017-10-10 22189 47452
2017-10-11 19697 50204
2017-10-12 4124 12054

Please suggest the query !!

Tags (1)
0 Karma

yannK
Splunk Employee
Splunk Employee

see the documentation on the stats command
http://docs.splunk.com/Documentation/Splunk/latest/SearchReference/Stats

 <mysearch >| stats avg(Failed_Attempts) avg(Passed_Authentications)
0 Karma

DalJeanis
Legend

I'm leaving this one for the young splunks.

0 Karma
Get Updates on the Splunk Community!

.conf25 Community Recap

Hello Splunkers, And just like that, .conf25 is in the books! What an incredible few days — full of learning, ...

Splunk App Developers | .conf25 Recap & What’s Next

If you stopped by the Builder Bar at .conf25 this year, thank you! The retro tech beer garden vibes were ...

Congratulations to the 2025-2026 SplunkTrust!

Hello, Splunk Community! We are beyond thrilled to announce our newest group of SplunkTrust members!  The ...