Splunk Search

to get fields in bar chart

sahana
Engager

I have a search query statistical result values in the below format

Login mode

Total login

xxx

48

Yyyy

23

aaa

52

bbbb

73

 

Now I need to display a bar chart which shows the login in respective of the login mode and the time selection in the query

 

for example:

sahana_0-1707368814863.png

 

Labels (1)
0 Karma

sahana
Engager

It is supposed to be a bar chart y axis denotes the login count and x- axis represents the time period selection we do in our search.... Those bars are representation of total count values of xxx,yyyy,aaa,bbb

0 Karma

yuanliu
SplunkTrust
SplunkTrust

What do you mean by "total count"?  There is only one total in my vocabulary.  That's the opposite of the mockup chart in your original post that shows multiple bars at each depicted time point.  If you don't need to break down, all you need is

| timechart count

 

0 Karma

yuanliu
SplunkTrust
SplunkTrust

You mean something like this?

| timechart count by "Login mode"
0 Karma
Get Updates on the Splunk Community!

Splunk Observability as Code: From Zero to Dashboard

For the details on what Self-Service Observability and Observability as Code is, we have some awesome content ...

[Puzzles] Solve, Learn, Repeat: Character substitutions with Regular Expressions

This challenge was first posted on Slack #puzzles channelFor BORE at .conf23, we had a puzzle question which ...

Shape the Future of Splunk: Join the Product Research Lab!

Join the Splunk Product Research Lab and connect with us in the Slack channel #product-research-lab to get ...