All Apps and Add-ons

How do I refresh a lookup file automatically with Splunk App for Lookup File Editing ?

hinako
Engager

Hi,

I want to refresh a lookup file daily.
How do I do this?

My file type is csv and in a file server.

Thanks,

Labels (2)
0 Karma

gcusello
SplunkTrust
SplunkTrust

Hi @hinako,

where does the csv file come from?

if it's in a server or pc folder, you can put it in a folder, read it and override the lookup with a simple scheduled search:

| inputcsv <your_csv_file>
| outputcsv <your-lookup>

eventually adding some check if the csv file is empty or missing.

Ciao.

Giuseppe

hinako
Engager

Hi, @gcusello 

Thank you so much.

My problem has solved.

I appreciate your kindfulness.

 

Thanks,

 

Hinako

0 Karma

gcusello
SplunkTrust
SplunkTrust

Hi @hinako ,

good for you, see next time!

let me know if I can help you more, or, please, accept one answer for the other people of Community.

Ciao and happy splunking

Giuseppe

P.S.: Karma Points are appreciated 😉

Get Updates on the Splunk Community!

Splunk Observability Synthetic Monitoring - Resolved Incident on Detector Alerts

We’ve discovered a bug that affected the auto-clear of Synthetic Detectors in the Splunk Synthetic Monitoring ...

Video | Tom’s Smartness Journey Continues

Remember Splunk Community member Tom Kopchak? If you caught the first episode of our Smartness interview ...

3-2-1 Go! How Fast Can You Debug Microservices with Observability Cloud?

3-2-1 Go! How Fast Can You Debug Microservices with Observability Cloud? Learn how unique features like ...