All Apps and Add-ons

Extracting results to a csv file

Djackson72
New Member

Hi,

 

I was wondering if I could do two things. I am new to splunk so please have mercy on me. I am looking for a query that will search inside a mailbox and look for a certain subject. Once it find that subject I would like to extract the recipients to a csv file for the last 40 days. Is this possible?

 

Labels (1)
0 Karma

richgalloway
SplunkTrust
SplunkTrust

If your mailboxes are indexed in Splunk then Splunk can search them.  Splunk cannot reach out to your email provider to search your mail.

With your email indexed, Splunk can search for the specified subject and extract the recipients (if in the index).  The final results of the search can be saved to a CSV file by using the outputcsv command.  See https://docs.splunk.com/Documentation/Splunk/8.2.1/SearchReference/Outputcsv

---
If this reply helps you, Karma would be appreciated.
0 Karma
Get Updates on the Splunk Community!

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...

Splunk MCP & Agentic AI: Machine Data Without Limits

Discover how the Splunk Model Context Protocol (MCP) Server can revolutionize the way your organization uses ...