Splunk Search

Timechartで、10個以上のデータがOtherに丸められてしまう。

Splunk_Shinobi
Splunk Employee
Splunk Employee

Timechartで10種類以上のデータを同時に表示・プロットしたいのですが、Othersに丸められてしまいます。
15種類など、より多く設定するにはどうすればよいでしょうか。

Tags (2)
0 Karma
1 Solution

melonman
Motivator

timechartコマンドに、limit=個数を指定すれば可能です。

docs.splunk.com/Documentation/Splunk/latest/SearchReference/Timechart

View solution in original post

0 Karma

melonman
Motivator

timechartコマンドに、limit=個数を指定すれば可能です。

docs.splunk.com/Documentation/Splunk/latest/SearchReference/Timechart

0 Karma

iceco
New Member

God, I'm a Chinese but I can totally understand your words. LOL

0 Karma
Get Updates on the Splunk Community!

.conf25 Community Recap

Hello Splunkers, And just like that, .conf25 is in the books! What an incredible few days — full of learning, ...

Splunk App Developers | .conf25 Recap & What’s Next

If you stopped by the Builder Bar at .conf25 this year, thank you! The retro tech beer garden vibes were ...

Congratulations to the 2025-2026 SplunkTrust!

Hello, Splunk Community! We are beyond thrilled to announce our newest group of SplunkTrust members!  The ...