Splunk Search

stacked column chart for three values

SanthoshSreshta
Contributor

Hi All,

I have generated a dashboard with column chart using Query: sourcetype="Churn Data_CSV" Churn="True." | stats count(Churn) as "Churn Count" by state |sort - "Churn Count" |head 10

In the above query I used only Churn="True" but now I want to get for TRUE and FALSE for every state showing in stacked column chart.
Can anyone help me out please.?

Regards,
Santhosh S.

0 Karma
1 Solution

SanthoshSreshta
Contributor

Got my answer 🙂

sourcetype="Churn Data_CSV" | stats count(eval(Churn="True.")) as True, count(eval(Churn="False.")) as False,count(eval(Churn="")) as Empty by state | sort - True| head 10

View solution in original post

SanthoshSreshta
Contributor

Got my answer 🙂

sourcetype="Churn Data_CSV" | stats count(eval(Churn="True.")) as True, count(eval(Churn="False.")) as False,count(eval(Churn="")) as Empty by state | sort - True| head 10

Get Updates on the Splunk Community!

The OpenTelemetry Certified Associate (OTCA) Exam

What’s this OTCA exam? The Linux Foundation offers the OpenTelemetry Certified Associate (OTCA) credential to ...

From Manual to Agentic: Level Up Your SOC at Cisco Live

Welcome to the Era of the Agentic SOC   Are you tired of being a manual alert responder? The security ...

Splunk Classroom Chronicles: Training Tales and Testimonials (Episode 4)

Welcome back to Splunk Classroom Chronicles, our ongoing series where we shine a light on what really happens ...