Hi,
I am very new to python. I need a small example of how to collect splunk search output in python variable. Please suggest.
I explain :
On Splunk I run the search
mysearch|fields new,old
I want to run a python script which print the value of new and old(for example only.I can do extra processing later,just want to learn make this work atleast).
I made the entry in commands.conf for script as
[myscript]
filename = mypyscript.py
and I am calling as
mysearch|fields new,old|script python myscript new old
or I need to call as
mysearch|fields new,old|script python myscript
and myscript will automatically take new and old value?
Also can i get the sample python script for this.
Please help.
You could take a look at $SPLUNK_HOME/etc/apps/search/bin/*.py for inspiration.