Splunk Search

Bubble Chart

supreme_coder
Engager

How do I display the below as a bubble chart? When I click the bubble chart for my search query its not working properly and is showing  _time as 0.

I want a bubble chart for:

x axis = _time

y axes = "y-axis"

size of bubble = "bubble_size"

 

supreme_coder_0-1612450134389.png

 

 

Labels (1)
0 Karma

to4kawa
Ultra Champion
| gentimes start=1/1/2021 end=2/1/2021
| eval time=strftime(starttime,"%d")
| eval y-axis = random()
| eval bubble = random() / 10000000000
| table  time y-axis bubble

x-axis should be number.

0 Karma
Get Updates on the Splunk Community!

Enterprise Security Content Update (ESCU) | New Releases

In December, the Splunk Threat Research Team had 1 release of new security content via the Enterprise Security ...

Why am I not seeing the finding in Splunk Enterprise Security Analyst Queue?

(This is the first of a series of 2 blogs). Splunk Enterprise Security is a fantastic tool that offers robust ...

Index This | What are the 12 Days of Splunk-mas?

December 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...