Hi,
I have installed the Scheduled Export of Indexed Data (SEND) to File add-on: https://splunkbase.splunk.com/app/2914/
I am trying to export the query output from add-on page provided steps. But the output is not storing as Splunk search output, its storing some coded format.
Just want to understand can we store the output as we see in Splunk search output (like table format in csv file).
Please help with the changes/setting.
Thanks!
Pavan
Hello,
Yes you can export search results to csv file using outputcsv command.
Your search query | outputcsv results.csv
You will find the file in this directory:
$SPLUNK_HOME/var/run/splunk/results.csv
http://docs.splunk.com/Documentation/Splunk/latest/SearchReference/Outputcsv
Regards