Dashboards & Visualizations

map visualization - regex for mapping.fieldColors

mikaelbje
Motivator

I'm trying to create a map visualization for different sites and I want to show each site name as well as their status on the map where status can be Up or Down. I'd like to color status Up green and status Down red. When I hover over a cluster/site I'd like to see the location name. I'm only able to get a count of Up/Down sites but without site names OR an overview of all sites but with no Up/Down info (I can always get the info in using an eval to include status into my location_name field, but this way I can't color it green/red.

Would it be possible to include support for regular expressions in mapping.fieldColors? I.e. instead of "Up:0xRRGGBB,Down:0xRR00FF", I could have "^.+ : Up$" and "^.+ : Down$" if I'd like to have let's say multiple fields returned to indicate location names + status (Up or Down) and I would like to color Up green and Down red but still show the location name.

SanthoshSreshta
Contributor

hi,.
i am also looking to add colors in geostats map.

here is the link for the question I had posted
http://answers.splunk.com/answers/236609/can-we-give-colors-in-geostats-based-on-ranges-of.html
if found please post the answer there .

0 Karma

xisura
Communicator

hi same situation here. Did you find a workaround or a solution in this ?

0 Karma

mikaelbje
Motivator

Finally found this! A little trick using xyseries might help you solve what you're trying to accomplish. It certainly helped me. Doesn't relly solve the regex part where field names might be dynamic though.

http://answers.splunk.com/answers/78397/changing-colors-in-a-column-chart.html

0 Karma

mikaelbje
Motivator

No, unfortunately a satisfactory solution was not found.

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Tiling

This puzzle (first published here) is based on finding groups of tessellated tiles (inspired by floor tiles I ...

SOK it to Me: Top 3 Benefits of Using Splunk Operator on Kubernetes that’ll Make ...

    Thursday, July 9, 2026  |  11:00AM–12:00PM PDT Duration: 1 hour (includes Q&A) Managing can feel like a ...

Upgrade Prep for 10.4, Network Observability Deep Dives, and More from Splunk Lantern

Splunk Lantern is Splunk’s customer success center that provides practical guidance from Splunk experts on key ...