Splunk search for Postfix messages sent over time
Copy
sourcetype=postfix_syslog status=sent | timechart span=1d count
This search will provide a timechart of posfix messages sent over time
sourcetype=postfix_syslog status=sent | timechart span=1d count