Hi,
I have a list of cities and countries along with latitude and longitude.
Name Latitude Longitude
India Blah Blah
US Blah Blah
Now how do I lookup on them and plot on a map visualization in Splunk? (geostats, iplocation, etc)
Thanks in advance
Hi xbbj3nj,
let's say your lookup file is called cities.csv
and the lookup is called cities
then you can run this search :
your base search here to get back city name | lookup cities | geostats latfield=Latitude longfield=Longitude count
and use the map
visualisation to show it on a map.
See the docs for more details:
http://docs.splunk.com/Documentation/Splunk/6.3.3/SearchReference/Lookup
http://docs.splunk.com/Documentation/Splunk/6.3.3/SearchReference/Geostats
Hope this helps ...
cheers, MuS
Depending on the way you want results to show up on a map, a Choropleth map visualization might also be useful. See this documentation:
http://docs.splunk.com/Documentation/Splunk/6.3.3/Viz/Choroplethmaps