Splunk Search

Why does geostats represent one and two arguments differently?

snorri
Path Finder

Im trying to represent som values with geostats, when I do this:

| geostats values(OK) by name

geostats present the results in a acceptable way:

alt text

But when I put in two values:

| geostats values(OK) values(NOK) by name

geostats presents the results like this:

alt text

Why is this? And how can I rename it?

0 Karma

DalJeanis
Legend

Try as

| stats values(OK) as MyName1 values(NOK) as MyName2 by name
0 Karma
Get Updates on the Splunk Community!

Database Performance Sidebar Panel Now on APM Database Query Performance & Service ...

We’ve streamlined the troubleshooting experience for database-related service issues by adding a database ...

IM Landing Page Filter - Now Available

We’ve added the capability for you to filter across the summary details on the main Infrastructure Monitoring ...

Dynamic Links from Alerts to IM Navigators - New in Observability Cloud

Splunk continues to improve the troubleshooting experience in Observability Cloud with this latest enhancement ...