Hey @venki522, you can do this using a derivative of the cumulative sum of the sum of netflow.bytes on a date histogram bucketed by second. The following screenshot will hopefully guide you down the right path:
Thank you Brandon for the reply.So netflow.bytes has both in_bytes and out_bytes since i dont see those fields in the netflow packet.
when i don the above my y-axis has got very big number and even minus.could i reduce it to shorter one and readable one.
moreover this is only on one index,how can i make this as graph a live one meaning the graph should show the volume in real time
thanks for the reply once again
Apache, Apache Lucene, Apache Hadoop, Hadoop, HDFS and the yellow elephant
logo are trademarks of the
Apache Software Foundation
in the United States and/or other countries.