When I do this search:
index="mydata" | eval mymean=avg(floatnumbers) | table floatnumbers,mymean
mymean just mimics whatever is in floatnumbers. How do I calculate the mean? I have tried the fie...
I try to make box plot graph using <viz> However, My code have this error, "Error in 'stats' command: The number of wildcards between field specifier '*' and rename specifier 'lowerquartile' ...
I have splunk logs that are of 2 types, successes and failures. They contain 2 things:
"SUCCESS" "ID: <IDNumber>"
"FAILURE" "ID: <IDNumber>"
My goal is to find IDs that are...
Hello,
I'm looking for the availability of "Glass Table" like visualization for the Splunk Enterprise (platform product). The objective is to create dynamic dashboards at runtime where users can l...
Hello, This question has probably been asked and answered, but, I just can't seem to find a best solution; I have a search that returns N of similar json objects of approx type: ...
I have the following bucket:
$SPLUNK_HOME/var/lib/splunk/defaultdb/db/db_1274129994_1273525194_0
Is there someway to calculate the date span of the events in this bucket?
The goal is just to have the percentage pass rate at the bottom of a dynamically named column that contains "Passed" or "Failed"
I have a table that contains 8 column headers that are dynamic and ...
Hi,
I'm seeing a very weird behavior from splunk and wondering if anyone knows whats going on.
My input is a cvs file with unix time stamps, which splunk seems to be reading in properly
one ...
I'm trying to get a new sourcetype (NetApp user-level audit logs, exported as XML) to work, and I think my fields.conf tokenizer is breaking things. But I'm not really sure how, or why, or what to do...
...tandard way of getting a scalar value from the json structure below. I save this value as "accessToken" and in second API call I set the header as "Bearer {{accessToken}}". When I i...