hi,
I have some fields extracted from Splunk and it has application name, response time, and response code.
By using above fields, how can we write a search to find 90th and 99th percentile response time.
i think i got it,i am using percX function,
Yep, something along the lines of
|stats perc90(responsetime) as response90, perc99(responsetime) as response96 by ApplicationName
Please mark your answer as accepted.