Splunk Search

display average hits per minute for each hour for a time range

jrich523
Path Finder

how do i show the average number of hits per minute for each hour?

basically i have a system that will, on peak hours, get between 60-80 hits a minute. what i'd like to see is for each hour (11am-12pm) show what the average hits/min is. sort of a nested average i guess.. and then show that for a day.

i wasnt even really sure what field to average so im not really off to a good start

Thanks

Tags (2)
1 Solution

gkanapathy
Splunk Employee
Splunk Employee

I'm assuming that your log data contains one entry per hit? If so, you can just do:

sourcetype=whatever | timechart span=1h count | eval hpm=count/60

View solution in original post

gkanapathy
Splunk Employee
Splunk Employee

I'm assuming that your log data contains one entry per hit? If so, you can just do:

sourcetype=whatever | timechart span=1h count | eval hpm=count/60
Career Survey
First 500 qualified respondents will receive a $20 gift card! Tell us about your professional Splunk journey.
Get Updates on the Splunk Community!

Introduction to Splunk AI

How are you using AI in Splunk? Whether you see AI as a threat or opportunity, AI is here to stay. Lucky for ...

Splunk + ThousandEyes: Correlate frontend, app, and network data to troubleshoot ...

Are you tired of troubleshooting delays caused by siloed frontend, application, and network data? We've got a ...

Maximizing the Value of Splunk ES 8.x

Splunk Enterprise Security (ES) continues to be a leader in the Gartner Magic Quadrant, reflecting its pivotal ...