icon/x Created with Sketch.

Splunk Cookie Policy

We use our own and third-party cookies to provide you with a great online experience. We also use these cookies to improve our products and services, support our marketing campaigns, and advertise to you on our website and other websites. Some cookies may continue to collect information after you have left our website. Learn more (including how to update your settings) here.
Accept Cookie Policy

We are working on something new...

A Fresh New Splunkbase
We are designing a New Splunkbase to improve search and discoverability of apps. Check out our new and improved features like Categories and Collections. New Splunkbase is currently in preview mode, as it is under active development. We welcome you to navigate New Splunkbase and give us feedback.

Accept License Agreements

This app is provided by a third party and your right to use the app is in accordance with the license provided by that third-party licensor. Splunk is not responsible for any third-party apps and does not provide any warranty or support. If you have any questions, complaints or claims with respect to this app, please contact the licensor directly.

Thank You

Downloading TA - Common Visualization Collection
To install your download
For instructions specific to your download, click the Details tab after closing this window.

Flag As Inappropriate

splunk

TA - Common Visualization Collection

Overview
Details
TA - Common Visualization Collection

This TA represents a collection of diverse Splunk visualizations packed all into one app. The advantage of this is the ease of installation and management of all visualizations through one TA.
The Repository contains all Data in . The installed versions of the visualizations are listed in the Details tab.
Install this TA on all Search Heads you want to use with more than the standard Visualizations.

Visualizations make it easier to analyze and interact with data during investigations or within dashboards and reports.
The right visual goes a long way to understanding the results of the analysis of your most complex data.
With rich visualization you can easily find the right diagram to make your results known across your organization—in the boardroom or in the war room.
Splunkbase contains a wide array of Splunk-built visuals, and a development framework that makes it simple for customers and partners to create new visuals and make them available to the community.

Take a deeper look to: https://docs.splunk.com/Documentation/SplunkLight/7.3.6/References/Datavisualizationlibrary

splunk TA - Common Visualization Collection

Synopsis

This TA represents a collection of diverse Splunk visualizations packed all into one app. The advantage of this is the ease of installation and management of all visualizations through one TA. The Repository contains all Data in /opt/splunk/etc/apps/Splunk_TA_common-viz. The installed versions of the visualizations are listed below.
Install this TA on all Search Heads you want to use with more than the standard Visualizations.

Visualizations make it easier to analyze and interact with data during investigations or within dashboards and reports.
The right visual goes a long way to understanding the results of the analysis of your most complex data.

With rich visualization you can easily find the right diagram to make your results known across your organization—in the boardroom or in the war room.
Splunkbase contains a wide array of Splunk-built visuals, and a development framework that makes it simple for customers and partners to create new visuals and make them available to the community.

Take a deeper look to https://docs.splunk.com/Documentation/SplunkLight/7.3.6/References/Datavisualizationlibrary

General

Data-Indexes:             All indexes, This is an addon for the Visualisations
Summary Indexes:          all related tstats indexes
Application Owner:        SwissTXT Security
Application Developper:   Patrick Vanreck
Roles:                    Search Head's and Search Head Cluster.
AD Group Mappings:        Defined by own Role Model

Who is this app for?

This app is for anyone who wants to display seVersional metrics on a small area of a dashboard.

How does the app work?

This app provides a visualization that you can use in your own apps and dashboards.

To use it in your dashboards, simply install the app, and create a search that provides the values you want to display.

Limits

Some visualization are bound by the follwoing limits:
- Total results: 1000

Dependencies

Once you have installed the TA, you can delete all other additionally installed visualization Addons like timeline visualization.

Compare the List shown in chapter Active Visualization addons and remove all additional installed.

After uninstalling all old visualization addons, you may need to adapt the path of the visualization in the dashboards.
Otherwise Splunk cannot find the correct path where the Visualisation is installed.

In our case the path where the new app Splunk_TA_common-viz is installed.

Here an example what to migrate in case that you used the timeline visualization in the past.

Search From: timeline.timeline

...
....
<option name="timeline.timeline.axisTimeFormat">MINUTES</option>
<option name="timeline.timeline.colorMode">categorical</option>
<option name="timeline.timeline.maxColor">#dc4e41</option>
<option name="timeline.timeline.minColor">#53a051</option>
<option name="timeline.timeline.numOfBins">3</option>
<option name="timeline.timeline.tooltipTimeFormat">MINUTES</option>
<option name="timeline.timeline.useColors">1</option>
...

Migrate/Change To: Splunk_TA_common-viz.timeline

...
....
<option name="Splunk_TA_common-viz.timeline.axisTimeFormat">MINUTES</option>
<option name="Splunk_TA_common-viz.timeline.colorMode">categorical</option>
<option name="Splunk_TA_common-viz.timeline.maxColor">#dc4e41</option>
<option name="Splunk_TA_common-viz.timeline.minColor">#53a051</option>
<option name="Splunk_TA_common-viz.timeline.numOfBins">3</option>
<option name="Splunk_TA_common-viz.timeline.tooltipTimeFormat">MINUTES</option>
<option name="Splunk_TA_common-viz.timeline.useColors">1</option>
...

Restart your Splunk instance!

You'll need to restart your Splunk daemon after this change.

Status of Active/Inactive Visualization addons

This TA contains a collection of Visualization addons for Splunk 8.0.x to 8.2.x Enterprise Versions.
The following List below shows which Visualization addons are integred and their Versionsion.

Active Visualization addons

List of the Active Visualization addons within this release.

  • Animated Chart Viz version 1.0.0
  • Arc Globe Visualisation version 1.0
  • Bullet Graph - Custom Visualization version 1.4.0
  • Calendar Custom Viz version 1.0.0
  • Calendar Heat Map version 1.5.0
  • Carousel Viz version 1.1.3
  • Circlepack Viz version 1.1.4
  • Clock Viz version 1.0.3
  • Cluster Map Viz version 1.2
  • Custom Radar Chart Visualization version 1.1.1
  • Custom Viz - Donut version 1.0.3
  • Custom Viz - Markdown Renderer version 1.0.3
  • Custom Viz - Scatterplot Matrix version 1.1.0
  • Dendrogram Viz version 1.0.3
  • Departures Board Viz version 1.1.0
  • Event Timeline Viz version 1.5.0
  • Flow Map Viz version 1.4.1.1
  • Force Directed App For Splunk version 3.1.0
  • Heat Map Viz version 1.3.1
  • Horizon Chart version 1.5.0
  • Link Analysis App For Splunk
  • Missile Map version 1.2.3
  • Network Diagram Viz version 2.0.0
  • Number Display Viz version 1.6.8
  • Parallel Coordinates Viz version 1.5.0
  • Performance Analysis version 1.3.0
  • Punchcard - Custom Visualization version 1.5.0
  • Region Chart Viz version 1.0.5
  • Sankey Diagram Viz version 1.5.0
  • Semicircle Donut Chart Viz version 1.2.3
  • Status Indicator Viz version 1.4.0
  • Sunburst Viz version 1.3.2
  • Timeline Viz version 1.5.0
  • Treemap - Custom Visualization version 1.4.0

Inactive Visualization addons

The following List below shows which Visualization addons are not more integrated within this Versionsion.

  • Donut Viz C3 version 1.02
  • Jointjs Diagram version 1.0.5
  • Network Topology Viz version 1.1
  • Timewrap version 2.4
  • WebGL Globe Viz - Version 2.0.1

How to use the Visualization addons

The following List explains in short how to use the visualisation addons within this release.

Please refeer to the TA after installing it to see how each visualization is working in detail.

Animated Chart Viz

example-animated-chart

Arc Globe Visualisation

example-arc-globe

Bullet Graph - Custom Visualization

example-bullet-graph

Calendar Custom Viz

example-Calendar-custom

Calendar Heat Map

example-Calendar-Heat-Map

Carousel Viz

example-Carousel

Circlepack Viz

example-circlepack

Clock Viz

example-clock

Cluster Map Viz

example-clustermap

Custom Radar Chart Visualization

example-custom-radar-chart

Custom Viz - Donut

example-Donut-Chart

Custom Viz - Markdown Renderer

example-Markdown-Renderer

Custom Viz - Scatterplot Matrix

example-Scatterplot-Matrix

Dendrogram Viz

example-Dendrogram

Departures Board Viz

example-Departures-Board

Event Timeline Viz

example-event-timeline

Flow Map Viz

example-flow-map

Force Directed App For Splunk

example-force-directed

Heat Map Viz

example-heatmap-viz

Horizon Chart

Example-Horizon-Chart

Link Analysis App For Splunk

Example-Link-Analysis-App

Missile Map

Example-Missile-Map

Network Diagram Viz

Example-Network-Diagram

Number Display Viz

example-number-display-viz

Parallel Coordinates Viz

example-parallel-coordinates-viz

Performance Analysis

Performance-Analysis-viz

Punchcard - Custom Visualization

Punchcard-viz

Region Chart Viz

example-region-chart

Sankey Diagram Viz

example-sankey-diagram

Semicircle Donut Chart Viz

example-semicircle

Status Indicator Viz

example-status-indicator

Sunburst Viz

example-Sunburst

Timeline Viz

example-Timeline

Treemap - Custom Visualization

example-treemap

Deprecated Visualization addons

The following List below shows which Visualization addons are not more integrated within this Version.

The most of them uses python 2.7 or are only compatible until Splunk 7.3.x

Donut Viz C3

Jointjs Diagram

Network Topology Viz

  • Version 1.1
  • Author: Michael Lin
  • --> Archived!! Do not use anymore !!

Timewrap

WebGL Globe Viz - Version 2.0.1 (Paul Stout)

https://splunkbase.splunk.com/app/3674/
- --> Archived!! Do not use anymore !!

Release Notes

v 2.0.0

  • Major Upgrade.
  • Upgrading all Visualizations compatible with Splunk 8.0.x or 8.1.x
  • Removing Visualizations not compatible with Splunk 8.0.x or 8.1.x

v 1.1.3

  • Minor change to add Timewrap SA

v 1.1.2

  • Minor change to pass AppInspect checks

v 1.1.0

  • Added ability to create tokens on click
  • Updated dashboard to show example token usage
  • Made value text fit better on fixed-size slides

v 1.0.0

-Initial Versionsion

Support

Support is not guaranteed and will be provided on a best effort basis.
Please use Github to open issues or feature requests:
- **https://github.com/Splunk-App-and-TA-development/Splunk_TA_common-viz/issues**

Splunk Version Support

Supported Splunk Versions Unsupported or Deprecated
8.2.x, 8.1.x, 8.0.x, 7.3.9, 7.3.6 7.3.5 and lower, 6.6.x, 6.5.x, 6.4, 6.3, 6.2, older

Credits

This app is supported by Patrick Vanreck (SwissTXT). Contact us under: yoyonet-info@gmx.net.

Software License

Please find the license for this software here:

Splunk TA Common Visualization Collection LICENSE

Copyrights

Permission is hereby granted, free of charge, to any person obtaining a copy of this software and associated documentation files (the "Software"),

to deal in the Software without restriction, including without limitation the rights to use, copy, modify, merge, publish, distribute, sublicense,

and/or sell copies of the Software, and to permit persons to whom the Software is furnished to do so, subject to the following conditions:

The above copyright notice and this permission notice shall be included in all copies or substantial portions of the Software.

<div class="footer"> Copyright © 2017-2021 by Patrick Vanreck _(SwissTXT AG)_ </div>

Subscribe Share

Are you a developer?

As a Splunkbase app developer, you will have access to all Splunk development resources and receive a 10GB license to build an app that will help solve use cases for customers all over the world. Splunkbase has 1000+ apps from Splunk, our partners and our community. Find an app for most any data source and user need, or simply create your own with help from our developer portal.

Follow Us:
Splunk, Splunk>,Turn Data Into Doing, Data-to-Everything, and D2E are trademarks or registered trademarks of Splunk LLC in the United States and other countries. All other brand names,product names,or trademarks belong to their respective owners.