Splunk Search

to get fields in bar chart

sahana
Engager

I have a search query statistical result values in the below format

Login mode

Total login

xxx

48

Yyyy

23

aaa

52

bbbb

73

 

Now I need to display a bar chart which shows the login in respective of the login mode and the time selection in the query

 

for example:

sahana_0-1707368814863.png

 

Labels (1)
0 Karma

sahana
Engager

It is supposed to be a bar chart y axis denotes the login count and x- axis represents the time period selection we do in our search.... Those bars are representation of total count values of xxx,yyyy,aaa,bbb

0 Karma

yuanliu
SplunkTrust
SplunkTrust

What do you mean by "total count"?  There is only one total in my vocabulary.  That's the opposite of the mockup chart in your original post that shows multiple bars at each depicted time point.  If you don't need to break down, all you need is

| timechart count

 

0 Karma

yuanliu
SplunkTrust
SplunkTrust

You mean something like this?

| timechart count by "Login mode"
0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

Modernize your Splunk Apps – Introducing Python 3.13 in Splunk

We are excited to announce that the upcoming releases of Splunk Enterprise 10.2.x and Splunk Cloud Platform ...

Step into “Hunt the Insider: An Splunk ES Premier Mystery” to catch a cybercriminal ...

After a whole week of being on call, you fell asleep on your keyboard, and you hit a sequence of buttons that ...