Dashboards & Visualizations

What is the definition of this DensityFunction macro so I can create it or do I need to download this macro?

POR160893
Builder

Hi,

I am creating a dashboard where I need to use the density function to show anomalies as follows:
| tstats count as total where index=dns by _time span=1h
| fit DensityFunction total dist=norm show_density=true
| bin total bins=100
| stats count avg("ProbabilityDensity(total)") as pd by total

However, when using the ProbabilityDensity function within the machine learning app in Splunk, no results are outputted.

In addition, I see no Probability Density macros "out-of-the-box" within the Machine Learning app either.


What is the definition of this DensityFunction macro so I can create it or do I need to download this macro?

 

Many thanks,

Labels (4)
0 Karma

tscroggins
Influencer

Hi,

Is Splunk Machine Learning Toolkit correctly installed? $SPLUNK_HOME/etc/apps/Splunk_ML_Toolkit/bin/algos/DensityFunction.py should be present.

Are you receiving any errors or warnings after the fit command?

0 Karma
Get Updates on the Splunk Community!

Announcing the Expansion of the Splunk Academic Alliance Program

The Splunk Community is more than just an online forum — it’s a network of passionate users, administrators, ...

Learn Splunk Insider Insights, Do More With Gen AI, & Find 20+ New Use Cases You Can ...

Splunk Lantern is a Splunk customer success center that provides advice from Splunk experts on valuable data ...

Buttercup Games: Further Dashboarding Techniques (Part 7)

This series of blogs assumes you have already completed the Splunk Enterprise Search Tutorial as it uses the ...