Is it possible to disable sampling in splunk pivot tables?
When I run my query in splunk I get 136k events. When I open a pivot table ( with 1 field selected ) it only processes about 1k of events.
However when I click “Open in search”, the pivot table does actually process all events, but now I can’t modify the pivot table.
Is there a way to disable sampling when I’m building the pivot table?
Note: I'm using a managed instance of splunk
question from:https://stackoverflow.com/questions/65909510/disabling-sampling-in-splunk-pivot-tables