All Apps and Add-ons

Row deletion not working for lookup editor 4.0.5

Navneet_Singh
Engager

When we delete a row in a csv lookup file, it gets deleted for that moment. But on saving, that row re-appears. Looks like a bug in latest version 4.0.5, working perfectly fine in 4.0.4 version. Upgrading to 4.0.5 because of vulnerabilities in 4.0.4. Anyone noticed  this issue?

Labels (1)
1 Solution

livehybrid
Ultra Champion

Hi @Navneet_Singh 

This is a known issue with version 4.0.5: "Not able to remove records from the CSV lookup file in Splunk App for Lookup File Editing version 4.0.5" (LOOKUP-300 ref)

For more info please check out the Known Issues section of the Release Notes: https://docs.splunk.com/Documentation/LookupEditor/4.0.5/User/Knownissues

 

:glowing_star: Did this answer help you? If so, please consider:

  • Adding karma to show it was useful
  • Marking it as the solution if it resolved your issue
  • Commenting if you need any clarification

Your feedback encourages the volunteers in this community to continue contributing

 

View solution in original post

Meett
Splunk Employee
Splunk Employee

Hello @Navneet_Singh @MaureenLynch ,

As mentioned by @livehybrid This is known bug in add-on so you have to wait till it gets fixed in coming release. However as a temporary solution, after deleting the desired row(s), please make a minor edit to any other cell (e.g., insert a blank space) before saving the file. This forces the app to register the change and update the lookup.

dm1
Contributor

This should be accepted as solution. This workaround works, not sure why Splunk hasn't put this workaround in the known issues section in the docs.

0 Karma

livehybrid
Ultra Champion

Hi @Navneet_Singh 

This is a known issue with version 4.0.5: "Not able to remove records from the CSV lookup file in Splunk App for Lookup File Editing version 4.0.5" (LOOKUP-300 ref)

For more info please check out the Known Issues section of the Release Notes: https://docs.splunk.com/Documentation/LookupEditor/4.0.5/User/Knownissues

 

:glowing_star: Did this answer help you? If so, please consider:

  • Adding karma to show it was useful
  • Marking it as the solution if it resolved your issue
  • Commenting if you need any clarification

Your feedback encourages the volunteers in this community to continue contributing

 

MaureenLynch
Loves-to-Learn

i am facing same issue

0 Karma
Get Updates on the Splunk Community!

See just what you’ve been missing | Observability tracks at Splunk University

Looking to sharpen your observability skills so you can better understand how to collect and analyze data from ...

Weezer at .conf25? Say it ain’t so!

Hello Splunkers, The countdown to .conf25 is on-and we've just turned up the volume! We're thrilled to ...

How SC4S Makes Suricata Logs Ingestion Simple

Network security monitoring has become increasingly critical for organizations of all sizes. Splunk has ...