Splunk Search

Why does addcoltotals not display decimal totals?

andrewtrobec
Motivator

Hello,
I've noticed that the addcoltotals command doesn't display decimals if the total contains a decimal. Run anywhere code:

| makeresults
| eval decimal = 1.5
| eval whole = 1.5
| append [ | makeresults
| eval decimal = 1
| eval whole = 1.5]
| addcoltotals

I'm using Splunk 6.4.1 and my results are:

decimal,whole
1.5,1.5
1,1.5
2,3.0 (here it truncates to a single decimal place for the decimal field)

Is there something I'm missing?
Regards,
Andrew

0 Karma
1 Solution

harishalipaka
Motivator

hi @andrewtrobec

try like this

| makeresults
 | eval decimal = 1.5
 | eval whole = 1.5
 | append [ | makeresults
 | eval decimal = 1
 | eval whole = 1.5]
 |eval decimal=round(decimal,2)  |eval whole=round(whole,2) |addcoltotals
Thanks
Harish

View solution in original post

harishalipaka
Motivator

hi @andrewtrobec

try like this

| makeresults
 | eval decimal = 1.5
 | eval whole = 1.5
 | append [ | makeresults
 | eval decimal = 1
 | eval whole = 1.5]
 |eval decimal=round(decimal,2)  |eval whole=round(whole,2) |addcoltotals
Thanks
Harish

harishalipaka
Motivator

Hi @andrewtrobec
Did you get that.
If my answer helped you please accept answer or up vote

Thanks
Harish
0 Karma

andrewtrobec
Motivator

This is a good workaround, thank you!

0 Karma

richgalloway
SplunkTrust
SplunkTrust

It looks like addcoltotals is using the lowest level of precision of the values it's adding. Since '1' has zero digits of precision, that's what is used for the result.

---
If this reply helps you, Karma would be appreciated.
0 Karma
Get Updates on the Splunk Community!

Index This | Why did the turkey cross the road?

November 2025 Edition  Hayyy Splunk Education Enthusiasts and the Eternally Curious!   We’re back with this ...

Enter the Agentic Era with Splunk AI Assistant for SPL 1.4

  🚀 Your data just got a serious AI upgrade — are you ready? Say hello to the Agentic Era with the ...

Feel the Splunk Love: Real Stories from Real Customers

Hello Splunk Community,    What’s the best part of hearing how our customers use Splunk? Easy: the positive ...