how to combine the following fileds and create a statical value of succesfull and failed call of the particular api by client id?
sample splunk log event:
1.INFO 2019-07-16 16:39:34,938 AFTER: IP_address=/xxxxxxxxx API_name=AAAAAAAAA server ip=RRRRRRR trace_ID=d24eea70-a809-11e9-9eb4-005056906aa7 location=en_US {http.reason=Bad Request, http.status=400, Content-Type=application/json;charset=UTF-8}
2.INFO 2019-07-16 16:39:34,809 client_ID: KKKKKK API_name: AAAAAAAA
just i want to create a dashboard that will show the number of successfull and failed using the client_ID?
thanks,
... View more