Splunk Search

how to group by month for yearly data.

rajhemant26
New Member

Hello everyone.

Want to display the output only for the time which crosses 18 months (earliest time)

Tags (1)
0 Karma

iamarkaprabha
Contributor

Hi ,
Can you use timechart instead of stats and use span of 1month over there

Vijeta
Influencer

@rajhemant26 Your query seems to be fine. Have you tried doing a simple search for past 6 months and are you able to get data for any other month except September for the index you have used? May be you dont have permission to search only on 1 month data at a timr. Try searching on the index for "All time" and see if you see data from August, July, June etc.

0 Karma

iamarkaprabha
Contributor

I second you Vijeta

0 Karma
Get Updates on the Splunk Community!

Built-in Service Level Objectives Management to Bridge the Gap Between Service & ...

Wednesday, May 29, 2024  |  11AM PST / 2PM ESTRegister now and join us to learn more about how you can ...

Get Your Exclusive Splunk Certified Cybersecurity Defense Engineer Certification at ...

We’re excited to announce a new Splunk certification exam being released at .conf24! If you’re headed to Vegas ...

Share Your Ideas & Meet the Lantern team at .Conf! Plus All of This Month’s New ...

Splunk Lantern is Splunk’s customer success center that provides advice from Splunk experts on valuable data ...