Answers for "regex splunk split variable"

0

regex splunk split variable

source="/logpath/logfile.log" earliest=-7d@d latest=@d :USERS | eval fields=split(_raw,":") | eval num=mvindex(fields,6) | timechart sum(num) as loggedUsers
Posted by: Guest on September-20-2021

Browse Popular Code Answers by Language