All Apps and Add-ons

Splunk Add-on Builder ::=> API requested data to KV Stores

kashz
Explorer

Using Add-on Builder:

Using Modular Input Python Code: I fetched the API data in JSON value, need to store in KV-Stores.

But the Add-on Builder Python Helper Functions (https://docs.splunk.com/Documentation/AddonBuilder/2.2.0/UserGuide/PythonHelperFunctions1) only specify write_to_index approach.
Is there an approach to store to KV-stores?

0 Karma
1 Solution

lakshman239
Influencer
0 Karma

lakshman239
Influencer
0 Karma

chli_splunk
Splunk Employee
Splunk Employee

You can use following functions to do this, although they are designed for checkpoint...

# save checkpoint
helper.save_check_point(key, state)
# delete checkpoint
helper.delete_check_point(key)
# get checkpoint
state = helper.get_check_point(key)
0 Karma

kashz
Explorer

It will not work as my JSON returned from the API is not just a single {key: value} which checkpoint accepts.
I have multi-key-valued JSON with nested key-value pairs.

0 Karma

chli_splunk
Splunk Employee
Splunk Employee

Can you give a name of your JSON as a key? You can also check the source codes of helper function, or REST API to operate Splunk KVStore.

0 Karma
Get Updates on the Splunk Community!

CX Day is Coming!

Customer Experience (CX) Day is on October 7th!! We're so excited to bring back another day full of wonderful ...

Strengthen Your Future: A Look Back at Splunk 10 Innovations and .conf25 Highlights!

The Big One: Splunk 10 is Here!  The moment many of you have been waiting for has arrived! We are thrilled to ...

Now Offering the AI Assistant Usage Dashboard in Cloud Monitoring Console

Today, we’re excited to announce the release of a brand new AI assistant usage dashboard in Cloud Monitoring ...