I have the firewall logs , i need to create pivot table , it will show the source ips in the rows , session end reason as as Columns , it will have count for each source ips.
SELECT count(reason) , reason
linux_messages.hostname = 'lc1’AND ( dst=‘x.x.x.x’ )
facet src , reason
SINCE 15 minutes ago