Splunk Search

Top 10 values and other to be Grouped in "OTHERS"..??

SanthoshSreshta
Contributor

Hi All,

I am bit new to this Splunk
I am able to get top 10 values but not able to group other ( not in top 10 ) in another value. Can any one provide the command to get the scenario.
I have used sourcetype="Churn Data_CSV" Churn="True." | top limit=10 state to get top 10 values. I want 11th column which contains other values.

Regards,
Santhosh.

1 Solution

krish3
Contributor

I believe you are looking for this..

your search string |top limit=10 state useother=1

View solution in original post

krish3
Contributor

I believe you are looking for this..

your search string |top limit=10 state useother=1

View solution in original post

SanthoshSreshta
Contributor

Wow.!!
That much simple.
tQ. Thanks a lot.

0 Karma
.conf21 Now Fully Virtual!
Register for FREE Today!

We've made .conf21 totally virtual and totally FREE! Our completely online experience will run from 10/19 through 10/20 with some additional events, too!