All Apps and Add-ons

How to generate a flow diagram from sequence of splunk events?

friscos
Explorer

Hi, Is there a way to generate a transaction flow diagram in Splunk?

Ex: Each transaction ID passes through 4 servers and I can view the sequence of log events in Splunk enterprise. I want to visualize these sequence of events. How do i achieve that?

Thanks

0 Karma

bowesmana
SplunkTrust
SplunkTrust

and there is of course the flow map viz by @chrisyounger 

https://splunkbase.splunk.com/app/4657/

if you are looking for transactional volume flow between the servers

rojyates
Explorer

I've found https://splunkbase.splunk.com/app/3120/ to be an effective way of showing calls between different components - with the length of the bars being the time taken for the call to complete. 

Get your data into a table of the following format:

| table startTime rowName category timeInMs

Then select the Timeline visualisation (once installed), and Format it with the option: 'use colour'.

0 Karma

ddrillic
Ultra Champion
0 Karma

sundareshr
Legend
Get Updates on the Splunk Community!

Enterprise Security Content Update (ESCU) | New Releases

In January, the Splunk Threat Research Team had one release of new security content via the Splunk ES Content ...

Expert Tips from Splunk Professional Services, Ensuring Compliance, and More New ...

Splunk Lantern is a Splunk customer success center that provides advice from Splunk experts on valuable data ...

Observability Release Update: AI Assistant, AppD + Observability Cloud Integrations & ...

This month’s releases across the Splunk Observability portfolio deliver earlier detection and faster ...