Hi Anirudh, (arbitrary) aggregations over one message field are currently not possible in Graylog but you might get along with the statistical values that Graylog provides on a per-field basis (see field list on the search sidebar).
Cheers, Jochen On Wednesday, 4 May 2016 18:41:29 UTC+2, anirudh r wrote: > > Hi all, lets say I have a log format such as > > *timestamp req_size URL user* > > > I need to make a table of data aggregating the req_size for each user in a > specified timespan. How can I do it in Graylog2. > > > Thanks. > -- You received this message because you are subscribed to the Google Groups "Graylog Users" group. To unsubscribe from this group and stop receiving emails from it, send an email to [email protected]. To view this discussion on the web visit https://groups.google.com/d/msgid/graylog2/34eeb61e-4996-4329-b558-bd77d49ff8f8%40googlegroups.com. For more options, visit https://groups.google.com/d/optout.
