Thank you.
I ended up going in to Settings > Lookups > Lookup table files and found the two CSVs (bitcoin_transactions.csv and firewall_traffic.csv) within the Splunk_ML_Toolkit app. I then changed their Share status from "App" to "Global".
The other issue was that I had installed version 5.1.0 of the MLTK on a system running Splunk Enterprise 7.3.4 and it turns out that they're not compatible (MLTK 5+ requires Splunk 😎 - so I had to downgrade MLTK to 4.5.0 and the Python for Scientific Computing app from 2.0.0 down to 1.4.
But the visualization's description on SplunkBase says that it requires version 2.0 of the Python for Scientific Computing app so it looks like the visualization is only compatible with Splunk 8+ even though the page says that it's compatible with "8.0, 7.3, 7.2, 7.1, 7.0".
I think that I'll just have to park the visualization until we upgrade to 8.
... View more