Follow these steps to use a scatter chart to identify discrete requests by size and response time:
- Log in to your Splunk server.
- Select the default Search & Reporting application.
- Ensure that the time range picker is set to Last 24 hours, and type the following search into the Splunk search bar. Then, click on Search or hit Enter:
index=main sourcetype=access_combined | eval kb=bytes/1024 | table method kb response
- Splunk will return a tabulated list of the method, kb, and response fields for each event.
- Click on the Visualization tab and select Scatter Chart from the drop-down list of visualization types to see the data represented as a scatter plot chart. You should see the cluster of normal activity and then some discrete ...