Splunk Search

how to group by month for yearly data.

rajhemant26
New Member

Hello everyone.

Want to display the output only for the time which crosses 18 months (earliest time)

Tags (1)
0 Karma

iamarkaprabha
Contributor

Hi ,
Can you use timechart instead of stats and use span of 1month over there

Vijeta
Influencer

@rajhemant26 Your query seems to be fine. Have you tried doing a simple search for past 6 months and are you able to get data for any other month except September for the index you have used? May be you dont have permission to search only on 1 month data at a timr. Try searching on the index for "All time" and see if you see data from August, July, June etc.

0 Karma

iamarkaprabha
Contributor

I second you Vijeta

0 Karma
Get Updates on the Splunk Community!

Webinar Recap | Revolutionizing IT Operations: The Transformative Power of AI and ML ...

The Transformative Power of AI and ML in Enhancing Observability   In the realm of IT operations, the ...

.conf24 | Registration Open!

Hello, hello! I come bearing good news: Registration for .conf24 is now open!   conf is Splunk’s rad annual ...

ICYMI - Check out the latest releases of Splunk Edge Processor

Splunk is pleased to announce the latest enhancements to Splunk Edge Processor.  HEC Receiver authorization ...