Splunk Search

Sum and average of values present in two columns of an output

yashwanth_g_pra
Observer

Hi All,

I would like to get the average for Failed_Attempts and Passed_Authentications of the below table,

_time Failed_Attempts Passed_Authentications
2017-10-09 12345 28800
2017-10-10 22189 47452
2017-10-11 19697 50204
2017-10-12 4124 12054

Please suggest the query !!

Tags (1)
0 Karma

yannK
Splunk Employee
Splunk Employee

see the documentation on the stats command
http://docs.splunk.com/Documentation/Splunk/latest/SearchReference/Stats

 <mysearch >| stats avg(Failed_Attempts) avg(Passed_Authentications)
0 Karma

DalJeanis
Legend

I'm leaving this one for the young splunks.

0 Karma
Get Updates on the Splunk Community!

Enter the Agentic Era with Splunk AI Assistant for SPL 1.4

  &#x1f680; Your data just got a serious AI upgrade — are you ready? Say hello to the Agentic Era with the ...

Feel the Splunk Love: Real Stories from Real Customers

Hello Splunk Community,    What’s the best part of hearing how our customers use Splunk? Easy: the positive ...

Data Management Digest – November 2025

  Welcome to the inaugural edition of Data Management Digest! As your trusted partner in data innovation, the ...