If you are using count for your stats aggregation function, then you can use the top command which automatically generates percentages. You can also use eventstats after the fact to calculate a grand total value that can then be used to calculate percentages. 0 Karma Reply...
http://docs.splunk.com/Documentation/Splunk/6.2.3/SearchReference/Stats 0 Karma Reply tysonjhayes Explorer 05-06-2015 10:28 AM Thanks! That's been corrected. 0 Karma Reply Solution stephanefotso Motivator 05-06-2015 10:18 AM Exact(X) is a function for Eval and Where...
This allows you to just compute one stats function and then evaluate any combination of percentages across your dataset. Of course this is a timechart, so you can just replace this with stats to get the desired functionality. 1 Karma Reply raoul Path Finder 08-18-2011 08:40 AM ...