Dashboards & Visualizations

How to mark the highest and lowest values on a line graph?

markthompson
Builder

Hello,
I'd like to put an extra point on top of the highest and lowest values on a line graph, has anyone got any suggestions?

Tags (3)
1 Solution

MuS
SplunkTrust
SplunkTrust

Hi markthompson,

take a look at the maxSpotColor and minSpotColor here in the docs http://docs.splunk.com/Documentation/Splunk/6.2.1/Viz/PanelreferenceforSimplifiedXML

Hope that helps ...

cheers, MuS

View solution in original post

MuS
SplunkTrust
SplunkTrust

Hi markthompson,

take a look at the maxSpotColor and minSpotColor here in the docs http://docs.splunk.com/Documentation/Splunk/6.2.1/Viz/PanelreferenceforSimplifiedXML

Hope that helps ...

cheers, MuS

markthompson
Builder

Hi MuS,
Thanks for that, so would it just be chart maxSpotColor = ??

Then is it a hex value, or how should it be displayed?

0 Karma

MuS
SplunkTrust
SplunkTrust

This from the dashboard example app https://apps.splunk.com/app/1603/ where you can see how it is done using a sparkline, but this will work on a chart as well.

<table>
      <title>Basic Sparkline w/ Max Value Indicator</title>
      <searchString>index=_internal | chart count sparkline by sourcetype | sort -count</searchString>
      <earliestTime>-24h@h</earliestTime>
      <latestTime>now</latestTime>
      <option name="wrap">true</option>
      <option name="rowNumbers">true</option>
      <option name="dataOverlayMode">none</option>
      <option name="drilldown">cell</option>
      <option name="count">5</option>

      <!-- Set sparkline options here; make sure that field matches field name of the search results -->      
      <format type="sparkline" field="sparkline">
        <option name="lineColor">#5379af</option>
        <option name="fillColor">#CCDDFF</option>
        <option name="lineWidth">1</option>
        <option name="maxSpotColor">#A2FFA2</option>
        <option name="spotRadius">3</option>
        <option name="height">25px</option>
      </format>
    </table>
0 Karma
Get Updates on the Splunk Community!

Enterprise Security Content Update (ESCU) | New Releases

In the last month, the Splunk Threat Research Team (STRT) has had 2 releases of new security content via the ...

Announcing the 1st Round Champion’s Tribute Winners of the Great Resilience Quest

We are happy to announce the 20 lucky questers who are selected to be the first round of Champion's Tribute ...

We’ve Got Education Validation!

Are you feeling it? All the career-boosting benefits of up-skilling with Splunk? It’s not just a feeling, it's ...