I am getting errords from the geoip script in the Google map apps in Splunk. The same search in the search app is working fine. I thought it might be some permission issue but google map app has read , write and execute functions properly defined.
Here is my search string: index=network sourcetype=syslog | rex field=_raw "(?
On seach head the following eror gets displayed
Script for lookup table 'geoip' returned error code 1 . Results may be incorrect.
Please suggest if there is a resolution for this issue.
Try:
index=network sourcetype=syslog ip=* | rex field=_raw "(?