I'd like to write a report in Splunk that would give me sum(downTimeInSec) as a percentage of total time, 3 days.
The search, "site=" |chart sum(downTimeInSec) by site, gives me this
63660-Sao Paulo Campinas 736
I'd like to have something like this:
63660-SaoPauloCampinas 736 .28394%
where the 3rd column is calculated as follows ((736 sec * 100%)/(3 days*86400 sec/day))
Thanks in advance for your help.
... View more