Hi Team,
I am new to Splunk portal. I have to search on multiple hosts for HTTP hits and display the result in single graph by application names hosted on the hosts. Not to display hostname.
Query is host="*" source="/home/abc/tomcat/logs/localhost_access_log.txt" | chart count over host by date_wday | fields host monday tuesday wednesday thursday friday saturday sunday
This query displays HTTP traffic by hostanme. But i want to replace the hostname with respective application name.
Wanna show the application name instead of hostname on graph with http counts
Looking forward for your help Thanks