stats splunk many fields 1

stats splunk many fields

 stats count(ip) as ip, count(login) as login, count(bcookie) as bcookie.

Here is what the above code is Doing:
1. We’re using the stats command to get the count of each field.
2. We’re using the eval command to create a new field called “total” that is the sum of the ip, login, and bcookie fields.
3. We’re using the stats command again to get the sum of the total field.

Similar Posts