Hi,
I have the following events in Splunk
{ "field1": "something", "execution_times": { "service1": 100, "service2": 400, (...) "service_N": 600, }, "field2": "something" }
How can I create a multiline chart that would show p90 + p99 of each "service" in JSON map "execution_times" based on the values [here 100, 400, (...) 600].
The query should produce a chart with N*2 (for p90 and p99) different time series (lines) based on all "services" that were inside events.
Each event can contain different "services" in its execution_times map.
Thanks
... View more