What is the primary difference between stats and eventstats commands?
Answer Posted / Supriya Suman
The stats command calculates statistical values for fields in the results, while the eventstats command computes statistics over a specific time range or event sequence. The stats command can only perform its calculations on events already in the search results, whereas eventstats can calculate statistics based on events that match certain conditions, even if those events are not present in the initial search results.
| Is This Answer Correct ? | 0 Yes | 0 No |
Post New Answer View All Answers