All Apps and Add-ons

How to generate a flow diagram from sequence of splunk events?

friscos
Explorer

Hi, Is there a way to generate a transaction flow diagram in Splunk?

Ex: Each transaction ID passes through 4 servers and I can view the sequence of log events in Splunk enterprise. I want to visualize these sequence of events. How do i achieve that?

Thanks

0 Karma

bowesmana
SplunkTrust
SplunkTrust

and there is of course the flow map viz by @chrisyounger 

https://splunkbase.splunk.com/app/4657/

if you are looking for transactional volume flow between the servers

rojyates
Explorer

I've found https://splunkbase.splunk.com/app/3120/ to be an effective way of showing calls between different components - with the length of the bars being the time taken for the call to complete. 

Get your data into a table of the following format:

| table startTime rowName category timeInMs

Then select the Timeline visualisation (once installed), and Format it with the option: 'use colour'.

0 Karma

ddrillic
Ultra Champion
0 Karma

sundareshr
Legend
Get Updates on the Splunk Community!

Splunk Mobile: Your Brand-New Home Screen

Meet Your New Mobile Hub  Hello Splunk Community!  Staying connected to your data—no matter where you are—is ...

Introducing Value Insights (Beta): Understand the Business Impact your organization ...

Real progress on your strategic priorities starts with knowing the business outcomes your teams are delivering ...

Enterprise Security (ES) Essentials 8.3 is Now GA — Smarter Detections, Faster ...

As of today, Enterprise Security (ES) Essentials 8.3 is now generally available, helping SOC teams simplify ...