Hi All ,
I have recently installed and configured the splunk dynatrace APM app , i could see the country and the visits.
But the map is not highlighting the visited countries.
I could see the events are failing with this part of query geostats latfield=lat longfield=lon count
Do we have any fix for this ?
Do you see any data if you run a new search:
If not, you might not be sending any visits from Dynatrace to Splunk. Make sure you have added the catch-all business transactions from the system profile located on this Dynatrace community page as a good starting point:
There is some additional documentation there on getting things setup as well.
Yes, i was able to see the data on giving sourcetype as visit .
index="dynatrace" sourcetype="visit" | rename dimensions."Client IP Address of Visit" as clientip
was able to get the data till the above part of the query and fails if i add ip location clientID
| iplocation clientip | geostats latfield=lat longfield=lon count
The iplocation functionality is native to Splunk, the only piece I think could fail here would be if the IPs that are coming in are not in Splunk's IP Location lookup table. This could happen if the IPs are LAN ips and not public IPs. Are these visits coming in from an external facing application?
@SuganyaSSF: If you load the report via "Searches and Reports" -> User Analytics: Visit by Client IP do you see any results? That particular dashboard and the underlying report has been refactored in version 2.3.0 of Dynatrace Splunk app. It no longer has external dependencies to other plugins and utilizes out of the box Splunk functionality for geolocating IPs and for visualizing the data.
The search should be:
index="dynatrace" sourcetype="visit" | rename dimensions."Client IP Address of Visit" as clientip | iplocation clientip | geostats latfield=lat longfield=lon count
If you do not export any visit based Business Transactions from Dynatrace you will not have any data to populate the search.
hope this helps!