Hello everybody,
I would like to know if it is possible to edit a lookup file directly in Splunk without dowloading the CSV ?
Thank you in advance.
Regards
Hi @Sal,
You can use Lookup File Editor.
https://splunkbase.splunk.com/app/1724/
Hi @Sal,
You can use Lookup File Editor.
https://splunkbase.splunk.com/app/1724/