Splunk Search

How to plot data on the Splunk Map from lookup data using Country Name, Country Code, City Name but not IP?

Contributor

I have a system that requires authentication so each user has a unique identifier.

I have a lookup to enrich users that can return the "Location Country" or "Location Region" or ISO country codes.

I would like to plot data against these users actions on the Splunk map. I do not have access to the users IP address.

I've looked around for a while but have no idea how to do this, can anyone point me in the right direction?

Thanks,

Dan

Edit: for clarification... is there a way I can take the ISO country codes, or city names and look them up to produce a longitude and latitude, then use that in the maps?

It would seem like a trick has been missed if you cant convert ISO country codes this way.

Tags (3)
1 Solution

Contributor

Ok I found this.

https://opendata.socrata.com/dataset/Country-List-ISO-3166-Codes-Latitude-Longitude/mnkm-8ram

I hoped Splunk could do this without adding another lookup.

Cheers,

Dan

View solution in original post

Contributor

Ok I found this.

https://opendata.socrata.com/dataset/Country-List-ISO-3166-Codes-Latitude-Longitude/mnkm-8ram

I hoped Splunk could do this without adding another lookup.

Cheers,

Dan

View solution in original post

Contributor

Hello! How did you resolve this? I'm trying to visualize the data per cities in a map and I'm not achieving it 😞

Thank you!

0 Karma

Influencer
0 Karma