Splunk Search

Splunk query to find locations in Missile Map

alexspunkshell
Contributor

I want missile map showing details from one to other location with title.

Please help me. Below is my query.

index=graphsecurityalert
| eval LogonIP=mvindex('userStates{}.logonIp',0)
|iplocation LogonIP |iplocation src_ip | stats dc(title) by Country | geom geo_countries featureIdField="Country" |table Country title latitude longitude

@soutamo @saravanan90 @thambisetty @ITWhisperer @gcusello @bowesmana   @to4kawa 

 

Labels (2)
0 Karma
Get Updates on the Splunk Community!

Enterprise Security Content Update (ESCU) | New Releases

In December, the Splunk Threat Research Team had 1 release of new security content via the Enterprise Security ...

Why am I not seeing the finding in Splunk Enterprise Security Analyst Queue?

(This is the first of a series of 2 blogs). Splunk Enterprise Security is a fantastic tool that offers robust ...

Index This | What are the 12 Days of Splunk-mas?

December 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...