Splunk Command – > | timechart count span=1d | timewrap 1week
- The timewrap command is a reporting command.
- Timechart command in the search before you use the timewrap command.
In the above example, we have a index “asa” where we are getting lots of data. we have compared that data using the timewrap command. In trendline of 1-2 weeks data and also their differences.