Splunk Dev

How to plot each and every gps lat long

abhijitp
Path Finder

I am on Splunk 6.4

I need to plot each and every gps lat long in a dashboard without any filtering or clustering.

My search query is -> sourcetype=geo | geostats count latfield=QueriedLatitude longfield=QueriedLongitude binspanlat=1 binspanlong=1

in other words, when i see the individual points, i should see count as 1 and not a bigger number. I have screenshots handy but cannot upload them.

i have tried these settings also with no success:
max clusters = 999

also, this happens to be a very short data set. ideally i would like to plot individual gps points for a data set of multiple magnitudes bigger. I am not sure if it is possible in Splunk.

Please help.

Thanks,
Abhi

0 Karma
1 Solution

abhijitp
Path Finder

I was able to get down to count=1 for most of the cases. Sometimes it still shows more than 1. This is how i did it.

sourcetype=geo | geostats count latfield=QueriedLatitude longfield=QueriedLongitude maxzoomlevel=18

It worked pretty closely for what i am trying to do.

View solution in original post

0 Karma

abhijitp
Path Finder

I was able to get down to count=1 for most of the cases. Sometimes it still shows more than 1. This is how i did it.

sourcetype=geo | geostats count latfield=QueriedLatitude longfield=QueriedLongitude maxzoomlevel=18

It worked pretty closely for what i am trying to do.

0 Karma
Get Updates on the Splunk Community!

Splunk + ThousandEyes: Correlate frontend, app, and network data to troubleshoot ...

 Are you tired of troubleshooting delays caused by siloed frontend, application, and network data? We've got a ...

Splunk Observability for AI

Don’t miss out on an exciting Tech Talk on Splunk Observability for AI!Discover how Splunk’s agentic AI ...

🔐 Trust at Every Hop: How mTLS in Splunk Enterprise 10.0 Makes Security Simpler

From Idea to Implementation: Why Splunk Built mTLS into Splunk Enterprise 10.0  mTLS wasn’t just a checkbox ...