# Timeline - how constract network I/O graph

**URL:** <https://discuss.elastic.co/t/timeline-how-constract-network-i-o-graph/120126>\
**Category:** Kibana\
**Created:** [February 16, 2018, 9:01am UTC](https://discuss.elastic.co/t/timeline-how-constract-network-i-o-graph/120126 "2018-02-16T09:01:19Z")\
**Posts on this page:** 1\
**Showing post:** 3

<div class="post-metadata">

**Author:** ![rcowart](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/rcowart/32/88091_2.png) [@rcowart](https://discuss.elastic.co/u/rcowart)\
**Post date:** [February 17, 2018, 7:36am UTC](https://discuss.elastic.co/t/timeline-how-constract-network-i-o-graph/120126/3 "2018-02-17T07:36:47Z")

</div>

Take a look at this reply...

> [@Kibana visualize network bandwidth from metribeat](https://discuss.elastic.co/t/kibana-visualize-network-bandwidth-from-metribeat/84698/4):
>
> You will probably have more success using Timelion in this case. .es(index="metricbeat-\*", metric="max:system.network.in.bytes", split="system.network.name:10", kibana=true).derivative().scale\_interval(1s).if(operator="lt", if=0, then=0).trim(start=2,end=1).label(regex="^.\* system.network.name:(.+) \> .\*$", label="$1").lines(width=2).yaxis(label="bytes / sec", min=0) Lets break this down a bit... .es( index="metricbeat-\*", metric="max:system.network.in.bytes", split="system.network.name:…

It is still pretty to what I typically use today, and should help in figuring out the various options.

---

_[View the full topic](https://discuss.elastic.co/t/timeline-how-constract-network-i-o-graph/120126)._
