in

Bin Command Splunk

bin command in splunk
bin command in splunk

Bin command splunk Inserts consecutive numbers into a discrete set or bin by adjusting the value of <field> so that all the elements in a particular set have the same value.

Syntax:

bin
[<bin-options>...]
<field> [AS <newfield>]

Query before using bin command in splunk:

index="_internal" sourcetype=splunkd
| stats c by sourcetype _time

Result before using bin command splunk:

bin command splunk

Query after using bin command in splunk:

index="_internal" sourcetype=splunkd
| bin span=5m _time
| stats c by sourcetype _time

Result after using bin command splunk:

Bin Command Splunk

Explanation:

The bin command in splunk is used to divide the events which are of the same time stamp and club then in to a single event and store it as a set as per timerange defined.

If you are still facing issue regarding bin command splunk Feel free to Ask Doubts in the Comment Box Below and Don’t Forget to Follow us on social platforms, happy Splunking >😉

What do you think?

-1 Points
Upvote Downvote

Leave a Reply

Your email address will not be published. Required fields are marked *

GIPHY App Key not set. Please check settings

addinfo command in splunk

Addinfo Command in Splunk

Dedup Command in Splunk

Dedup Command in Splunk