Splunk® Cloud Services

SPL2 Search Reference

Acrobat logo Download manual as PDF


Acrobat logo Download topic as PDF

streamstats command overview

The streamstats command adds a cumulative statistical value to each search result as each result is processed. For example, you can calculate the running total for a particular field, or compare a value in a search result with a the cumulative value, such as a running average. The streamstats command includes options for resetting the aggregates.

Syntax

The required syntax is in bold.

streamstats <aggregation> ...
[<by-clause>]...
[<reset-clause>]


See also

streamstats command
streamstats command syntax details
streamstats command usage
streamstats command examples
Functions
Overview of SPL2 stats and chart functions
Last modified on 14 July, 2021
PREVIOUS
stats command examples
  NEXT
streamstats command syntax details

This documentation applies to the following versions of Splunk® Cloud Services: current


Was this documentation topic helpful?

You must be logged into splunk.com in order to post comments. Log in now.

Please try to keep this discussion focused on the content covered in this documentation topic. If you have a more general question about Splunk functionality or are experiencing a difficulty with Splunk, consider posting a question to Splunkbase Answers.

0 out of 1000 Characters