I need a statistic which show total events in 1 month, 1 week and 1 day and create a dashboard, for example column chart which has 3 columns, first for total request in 1 month, second for 1 week and third for 1 day.
How to do that in splunk
Try this
index=yourindex earliest=-30d@d | stats count as LastMonth | appendcols [search index=yourindex earliest=-7d@d | stats count as LastWeek] | appendcols [search index=yourindex earliest=-1d@d | stats count as LastDay]