Follow these steps to pivot chart the top error codes:
- Log in to your Splunk server.
- Select the Operational Intelligence application.
- Select the Datasets menu item from the application menu.
- On Web Access > All Web Access > Error dataset row, select the Explore dropdown in the Actions column and Visualize with Pivot.
- Configure the Pivot interface such that Filters is set to Last 24 hours, Split Rows is set to _time, _time Periods is set to Hours, Split Columns is set to status, and Column Values is set to Count of Error, as shown in the following screenshot:
- You should see a count by status codes over 1-hour time periods. ...