All Apps and Add-ons

How do I refresh a lookup file automatically with Splunk App for Lookup File Editing ?

hinako
Engager

Hi,

I want to refresh a lookup file daily.
How do I do this?

My file type is csv and in a file server.

Thanks,

Labels (2)
0 Karma

gcusello
SplunkTrust
SplunkTrust

Hi @hinako,

where does the csv file come from?

if it's in a server or pc folder, you can put it in a folder, read it and override the lookup with a simple scheduled search:

| inputcsv <your_csv_file>
| outputcsv <your-lookup>

eventually adding some check if the csv file is empty or missing.

Ciao.

Giuseppe

hinako
Engager

Hi, @gcusello 

Thank you so much.

My problem has solved.

I appreciate your kindfulness.

 

Thanks,

 

Hinako

0 Karma

gcusello
SplunkTrust
SplunkTrust

Hi @hinako ,

good for you, see next time!

let me know if I can help you more, or, please, accept one answer for the other people of Community.

Ciao and happy splunking

Giuseppe

P.S.: Karma Points are appreciated 😉

Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Why Splunk Customers Should Attend Cisco Live 2026 Las Vegas

Why Splunk Customers Should Attend Cisco Live 2026 Las Vegas     Cisco Live 2026 is almost here, and this ...

What Is the Name of the USB Key Inserted by Bob Smith? (BOTS Hint, Not the Answer)

Hello Splunkers,   So you searched, “what is the name of the usb key inserted by bob smith?”  Not gonna lie… ...

Automating Threat Operations and Threat Hunting with Recorded Future

    Automating Threat Operations and Threat Hunting with Recorded Future June 29, 2026 | Register   Is your ...