Analytics of order

ok so say I have some documents, each based on an event that can be identified by an ip address field and a timestamp . each of these documents contains another field= field with a limited number of possible values [a,b,c,d,e,f,g,h]. If the documents concerned have a timestamp field is it possible to query: the sequence in which the documents which share an ip address held the various field values? And the percentile of the time they held those values?

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.