Quantcast
Channel: Questions in topic: "splunk-enterprise"
Viewing all articles
Browse latest Browse all 47296

Searching multiple log messages and count their occurrence

$
0
0
index=my_index earliest=-30d "[ERR] Failed to connect with downstream node" OR "[ERR] Failed to authenticate downstream node" OR "[ERR] Downstream node sent invalid response" I want to get the count of these log messages and plot their count using timechart like | timechart count(NodeConnectionError), count(AuthenticationError), count(InvalidResponseError) limit=0 Can someone let me know how to determine this also is it possible to aggregate few message count like | timechart (count(NodeConnectionError) + count(InvalidResponseError) ) as GenericError, count(AuthenticationError), limit=0

Viewing all articles
Browse latest Browse all 47296

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>