Following is my asterisk queue_logs, I want to create chart base on Agent/72XX like home many users completed call something like that how do i filter and count numer of gents
1296490205|1296489840.5677|queue2|Agent/7211|COMPLETECALLER|7|48 1296489926|1296489840.5677|queue2|Agent/7210|CONNECT|3 1296489913|1296488593.5663|queue1|Agent/7217|COMPLETECALLER|6|1284 1296488629|1296488593.5663|queue1|Agent/7212|COMPLETECALLER|3|23 1296487993|1296487889.5652|queue1|Agent/7217|TRANSFER|7187 1296487821|1296487820.5651|NONE|Agent/7207|AGENTCALLBACKLOGIN|7217@queueagents
How to write search on splunk ?
I think this is what you are asking (assuming that the 4th field is called user
and the 5th is called action
😞
... | stats dc(user) by action