please how could i write this Splunk function in kibana
sum(NetTargetConnectCount) as SumNetTargetConnectCount
sum(NetTargetReconnectCount) as SumNetTargetReconnectCount
sum(NetTargetRetransmitCount) as SumNetTargetRetransmitCount
sum(NetTargetSendCount) as SumNetTargetSendCount
hopefully someone with better SPL knowledge can weight in, but something like this in SQL might work:
SELECT
sum(NetTargetConnectCount) as SumNetTargetConnectCount,
sum(NetTargetReconnectCount) as SumNetTargetReconnectCount,
sum(NetTargetRetransmitCount) as SumNetTargetRetransmitCount,
sum(NetTargetSendCount) as SumNetTargetSendCount,
count(Application_NetworkConnectFailure) as SumApplicationNetworkConnectFailureCount
FROM myIndex
WHERE NetTargetProtocols = 'TCP'
| math "100 - round ((SumApplicationNetworkConnectFailureCount + SumNetTargetReconnectCount) / (SumApplicationNetworkConnectFailureCount + SumNetTargetConnectCount) * 100, 3)"
Apache, Apache Lucene, Apache Hadoop, Hadoop, HDFS and the yellow elephant
logo are trademarks of the
Apache Software Foundation
in the United States and/or other countries.