in Technology by (1.9m points)

What is the difference between stats and eventstats commands?

1 Answer

0 votes
by (1.9m points)
  • The stats command generates summary statistics of all the existing fields in the search results and saves them as values in new fields.
  • Eventstats is similar to the stats command, except that the aggregation results are added inline to each event and only if the aggregation is pertinent to that event. The eventstats command computes requested statistics, like stats does, but aggregates them to the original raw data.