Count of Host added to Splunk by Month

Can we get a Splunk Query that list of hosts added to Splunk in a month.  Like

Month 1 : 200 devices added

Month 2: 400 devices added


You would do this:

host=* | stats dc(host) as host by date_month

(Edits Made and query provided by the GoSplunk Ninja)

Share This:

Leave A Comment?