I have a list of cities and countries along with latitude and longitude.
Name Latitude Longitude
India Blah Blah
US Blah Blah
Now how do I lookup on them and plot on a map visualization in Splunk? (geostats, iplocation, etc)
Thanks in advance
let's say your lookup file is called cities.csv and the lookup is called cities then you can run this search :
your base search here to get back city name | lookup cities | geostats latfield=Latitude longfield=Longitude count
and use the map visualisation to show it on a map.
See the docs for more details:
Hope this helps ...
Depending on the way you want results to show up on a map, a Choropleth map visualization might also be useful. See this documentation: