Splunk Search

Problem with the number of column in a row

abhayneilam
Contributor

Hi,

I am running a query which would produce 29 column all total, but in my SPLUNK result set it is showing only upto 10 columns and rest goes to OTHER column

If it is more than 10 column in a row it will take rest of the column as a OTHER

Please let me know how to fix this issue, how to increase the number of column to be displayed in the SPLUNK Result set

Thanks in Advance

Tags (2)
0 Karma
1 Solution

abhayneilam
Contributor

yaa martin you are right, I am sorry , I was exicted that's you forgot to post the answer !! we can use limit= to limit the number of column to be displayed in the result set of SPLUNK.

Ex: If I have total of 50 columns in a result set , by default only 10 will be displayed and rest will go in OTHER field, so at that time we can give the following ..

....| chart count(Any_Field) by ID limit=50

Thanks 🙂

0 Karma

martin_mueller
SplunkTrust
SplunkTrust

You could write what you did as an answer so future generations 😉 can use it.

0 Karma

abhayneilam
Contributor

It is done on my own , thanks !!

0 Karma
Get Updates on the Splunk Community!

Observability | Use Synthetic Monitoring for Website Metadata Verification

If you are on Splunk Observability Cloud, you may already have Synthetic Monitoringin your observability ...

More Ways To Control Your Costs With Archived Metrics | Register for Tech Talk

Tuesday, May 14, 2024  |  11AM PT / 2PM ET Register to Attend Join us for this Tech Talk and learn how to ...

.conf24 | Personalize your .conf experience with Learning Paths!

Personalize your .conf24 Experience Learning paths allow you to level up your skill sets and dive deeper ...