Reporting

Why am I not seeing any statistics with my pivot table?

vkale
Explorer

After linking the data, when I go to the search string, it shows the events and all the details from tags, but does not show me any statistics. Because of this, I need to create the pivot table manually for report design. I guess I am wrong somewhere in creating logic in the data model from where I am taking the information. Can anyone please tell me what is the standard procedure so the I will get the statistics also after search string query. if you provide me any sample case study it will be highly appreciable.

0 Karma

chimell
Motivator

Hi vkale
look at an example of search using pivot command

example : Using the Tutorial data model, create a pivot table for the count of
"HTTP Requests" per host.

| pivot Tutorial HTTP_requests count(HTTP_requests) AS "Count" SPLITROW
    host AS "Server" SORT 100 host

For more information see the manuel Splunk-6.2.2-PivotTutorial.pdf

Get Updates on the Splunk Community!

Stay Connected: Your Guide to May Tech Talks, Office Hours, and Webinars!

Take a look below to explore our upcoming Community Office Hours, Tech Talks, and Webinars this month. This ...

They're back! Join the SplunkTrust and MVP at .conf24

With our highly anticipated annual conference, .conf, comes the fez-wearers you can trust! The SplunkTrust, as ...

Enterprise Security Content Update (ESCU) | New Releases

Last month, the Splunk Threat Research Team had two releases of new security content via the Enterprise ...