Hi guys,
1) I've got a table like this:
month A1 A2 A3 .... A70
2017.08 x1 y1 z1
2017.07 x2 y2 z2
2017.06 x3 y3 z3
...
2) Then it is transformed with some logic and formatting like:
A1=if(month>"2017.08", A1."(".A1/A1_plan.")", A1)
A2=if(month>"2017.08", A2."(".A2/A2_plan.")", A2)
...
A70
3) Then it is transposed and resulting table looks like:
... 2017.06 2017.07 2017.08 .....
A1 x11 x22 x33
A2 y11 y22 y33
A3 z11 z22 z33
How can I perform transformations from step 2 without making 70 evaluations? If I do it in one query Splunk Web crashes.. Evaluations are almost the same for different An.
If there is a parameter for a column names like $column_name$, this can solve the issue with just one string like:
$column_name$=if(month>"2017.08", $column_name$."(".$column_name$/$column_name$_plan.")", $column_name$)
Is there such token or how else the problem can be solved?
Thanks in advance!
Katerina
... View more