Dear all,
I created SingleValue Panels on my dashboard which shows me a status of a Application. This is my search:
... | stats count as errors | rangemap field=errors low=0-0 default=severe | replace 0 with "Service OK"
I replaced 0 with Service OK because it looks better on the monitoring TV. This works fine but I cannot change values > 0 to Service NOK. The replace function only works with string. So if Splunk counts errors, it shows me a number on my dashboard. I want to keep rangemap in my search because I want a green color if value is 0 and red color if value > 0.
Is there any other function I could use for this?
Thanks in advance for your help.
Greets nwe
... View more