Splunk Search

D3 sankey chart without using Django framework

melonman
Motivator

Hi

I found an example using Django Framework in Splunk app site.
But I still can not figure out how to do the same without Django.
I am looking for a sample script and configuration for D3 without using Django Framework, with simple XML JS extension.

Does anyone know the example for sankey chart with Simple XML JS extension?

Thank you very much in advance.

Tags (2)
1 Solution

gmelnik_splunk
Splunk Employee
Splunk Employee

Recently released Splunk Developer Guide provides a detailed walkthrough of how to do this. Specifically, check out Chapter 03. UI and Visualizations.

View solution in original post

gmelnik_splunk
Splunk Employee
Splunk Employee

Recently released Splunk Developer Guide provides a detailed walkthrough of how to do this. Specifically, check out Chapter 03. UI and Visualizations.

iKate
Builder

@martin_mueller, @MuS hello! Are there any limitations on the amount of data that can be used in this chart? I'm using 90MB file of 200K rows and the dashboard can hardly build a graph even with limit 10 and can never do it with limit 15 and above. Chrome or FF web-page simply crashes. And can you please tell more about $sankey.searchterms$
Thank you!

0 Karma

sbsbb
Builder

it is great ! is it possible to have more that 3 columns in the sankey ? If I have more than 3 columns, it is not working anymore...

0 Karma

sbsbb
Builder

Thank you, I had not the latest one...

0 Karma

MuS
Legend
0 Karma

sbsbb
Builder

Where is this prototype hide ? I can't find it

0 Karma

martin_mueller
SplunkTrust
SplunkTrust

The current SideviewUtils version contains a prototype Sankey module... but then that wouldn't be SimpleXML.

Get Updates on the Splunk Community!

Stay Connected: Your Guide to May Tech Talks, Office Hours, and Webinars!

Take a look below to explore our upcoming Community Office Hours, Tech Talks, and Webinars this month. This ...

They're back! Join the SplunkTrust and MVP at .conf24

With our highly anticipated annual conference, .conf, comes the fez-wearers you can trust! The SplunkTrust, as ...

Enterprise Security Content Update (ESCU) | New Releases

Last month, the Splunk Threat Research Team had two releases of new security content via the Enterprise ...