Splunk Search

chart over date for metrics

xvxt006
Contributor

Hi,

i have metrics that i want to track them as stacked over period of time (day)

| chart over Date by measure

This is not giving any results. Do you know why?

Tags (1)
0 Karma

xvxt006
Contributor

never mind i have used column chart. Thanks for your help

0 Karma

xvxt006
Contributor

Thanks i got this. But the stacked bar chart is horizontal meaning bars are going in horizontal. Can i make them vertical?

0 Karma

tmarlette
Motivator

Have you tried the 'timechart' function of splunk? Check it out on the documentation, and it may help.

timechart

somesoni2
Revered Legend

You need to specify the aggregator or function with field name on which that function to be applied. E.g. chart avg(count) over Date by measure. What fields are available before chart command?

Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Persistent Queue at TcpOut — One of Splunk's Most Practical Features

Splunk introduced persistent queueing at the tcpout layer as one of the most practical resilience features in ...

Skip the Awkward Silence: Have a .conf-ersation at .conf26

Picture this. You arrive at .conf26 already having your socializing and networking plans mapped out. No ...

Rethinking Zero Trust: From Product Purchases to Logical Control Evidence

Implementing Zero Trust (ZT) across complex environments often falters at the very beginning due to a ...