Quantcast
Channel: Questions in topic: "splunk-enterprise"
Viewing all articles
Browse latest Browse all 47296

How can I sort time inside list(time)?

$
0
0
So, I regex time from my splunk logs in form of (HH:MM:SS), and I am trying to build the report like **index: _something_ | regex Time | regex Date | regex User | stats list( (regex)Time) by (regex)Date, (regex)User** Unfortunately, the list of (regex)Time is not showing up in orderly manner. How can I make this ordering in ascending manner? Thanks in advance!

Viewing all articles
Browse latest Browse all 47296

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>