# TSVB Visualization Sum Aggregration

**URL:** <https://discuss.elastic.co/t/tsvb-visualization-sum-aggregration/287078>\
**Category:** Kibana\
**Created:** [October 19, 2021, 11:13am UTC](https://discuss.elastic.co/t/tsvb-visualization-sum-aggregration/287078 "2021-10-19T11:13:05Z")\
**Posts on this page:** 5\
**Page:** 1

<div class="post-metadata">

**Author:** ![Ankita\_Pachauri](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/ankita_pachauri/32/61469_2.png) [@Ankita\_Pachauri](https://discuss.elastic.co/u/Ankita_Pachauri)\
**Post date:** [October 19, 2021, 11:13am UTC](https://discuss.elastic.co/t/tsvb-visualization-sum-aggregration/287078/1 "2021-10-19T11:13:05Z")

</div>

Hi,  
I am using the TSVB Visualization to calculate the sum of CPU and memory assigned to the number of virtual machines. When I change the timestamp from the last 24 hours to the last 48 hours, the sum becomes double. But ideally, it should not be doubled.  
Here are the screenshots for your reference.  
Last 48 hours:  
 ![48](https://us1.discourse-cdn.com/elastic/original/3X/f/0/f03cfb122f08d4d32cfca294954ec98f7611af9b.jpeg)

Last 24 hours:  
 ![24](https://us1.discourse-cdn.com/elastic/original/3X/1/2/1206997d9b3a8f70636ac9777a9a5a045b2ec5e1.jpeg)

Is there any way to fix this problem?

---

<div class="post-metadata">

**Author:** ![ghudgins](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/ghudgins/32/138532_2.png) [@ghudgins](https://discuss.elastic.co/u/ghudgins)\
**Post date:** [October 19, 2021, 12:55pm UTC](https://discuss.elastic.co/t/tsvb-visualization-sum-aggregration/287078/2 "2021-10-19T12:55:19Z")

</div>

having no insight about your data, maybe an average instead of a sum would give you the result you want?

---

<div class="post-metadata">

**Author:** ![Ankita\_Pachauri](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/ankita_pachauri/32/61469_2.png) [@Ankita\_Pachauri](https://discuss.elastic.co/u/Ankita_Pachauri)\
**Post date:** [October 19, 2021, 4:56pm UTC](https://discuss.elastic.co/t/tsvb-visualization-sum-aggregration/287078/3 "2021-10-19T16:56:19Z")

</div>

Hi Graham,  
I want to visualize the total sum of CPU assigned to all virtual machines as an overview. Then after applying the filter to a particular virtual machine, it should show the respective values.

My requirement is to disassociate the timestamp to this visualization. Is there any way out?

---

<div class="post-metadata">

**Author:** ![ghudgins](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/ghudgins/32/138532_2.png) [@ghudgins](https://discuss.elastic.co/u/ghudgins)\
**Post date:** [October 20, 2021, 9:52pm UTC](https://discuss.elastic.co/t/tsvb-visualization-sum-aggregration/287078/4 "2021-10-20T21:52:20Z")

</div>

Still shooting blind 🙂 - Maybe try "last value" in Lens (it's called "top hits" in TSVB) which will return the last value of this based on the timestamp instead of summing what I assume is metric data?

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [November 17, 2021, 9:53pm UTC](https://discuss.elastic.co/t/tsvb-visualization-sum-aggregration/287078/5 "2021-11-17T21:53:18Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
