Hi Splunk Experts,
I am very new to Splunk and need some help to resolve my problem.
I have a dataset that comprises many fields with key fields are timestamp, user, region, location, delay.
I need to divide delay into two bands; one band is for users meeting <500 ms threshold and and another band for those above 500 ms.
I would like to create two outputs: a table and a bar chart that shows me:
Number of users (from total population) that meets 500 ms threshold by region and location
Percentage of users (from total population) that meets 500 ms threshold by region and location
What delay is met for each region and location for 90 % of users (90 percentile)?
Many thanks for help..
... View more