Splunk Search

How to search the sum of bytes by IP?

arkonner
Path Finder

I am trying to find the total bytes usage by user/ip - I have in the index the various clientip and the bytes usage on a specific moment.
The result of my search would report for each user/ip the total bytes based on the various preset time

Tags (3)
0 Karma

alemarzu
Motivator

Hi there, try with this

main search | stats sum(bytes_field) by User IP
0 Karma
Get Updates on the Splunk Community!

Enter the Splunk Community Dashboard Challenge for Your Chance to Win!

The Splunk Community Dashboard Challenge is underway! This is your chance to showcase your skills in creating ...

.conf24 | Session Scheduler is Live!!

.conf24 is happening June 11 - 14 in Las Vegas, and we are thrilled to announce that the conference catalog ...

Introducing the Splunk Community Dashboard Challenge!

Welcome to Splunk Community Dashboard Challenge! This is your chance to showcase your skills in creating ...