Dashboards & Visualizations

How to download Reports and Macros from Splunk(by using Splunk SDK for Python)

Satya_P
Explorer
 
0 Karma
1 Solution

kamlesh_vaghela
SplunkTrust
SplunkTrust

@Satya_P 

https://host:<mgmt_port>/services/saved/searches

 

http://localhost:8089/servicesNS/-/app/saved/searches?search=eai:acl.owner%3Duser_name

This endpoint will gives you list of searches.

 

Check this link for more: https://docs.splunk.com/Documentation/Splunk/8.2.1/RESTREF/RESTsearch#saved.2Fsearches

You can try SPL also.

| rest /servicesNS/-/-/saved/searches splunk_server=local

 

https://docs.splunk.com/Documentation/Splunk/latest/RESTREF/RESTconf#configs.2Fconf-.7Bfile.7D

Similarly you can get list of macros.

curl -k -u admin:pass https://localhost:8089/services/configs/conf-macros

 

| rest /servicesNS/-/-/admin/macros count=0 splunk_server=local

 

With Python SDK check this link. You will find example code there.

https://dev.splunk.com/enterprise/docs/devtools/python/sdk-python/howtousesplunkpython/howtowork/

I hope this will help you.

Thanks
KV
▄︻̷̿┻̿═━一

If any of my reply helps you to solve the problem Or gain knowledge, an upvote would be appreciated.

View solution in original post

Satya_P
Explorer

Thank You Kamlesh ...I have checked it and am able to access my reports and macros.

I will check next part that how to download it by using python.

0 Karma

kamlesh_vaghela
SplunkTrust
SplunkTrust

@Satya_P 

Can you please share more details about your requirement?

KV

0 Karma

Satya_P
Explorer

I need to access my current reports and macros from Splunk where it has been created.

so that it can be downloaded and then can be able to commit to git repository .

This needs to be done by Using Splunk sdk for python.

Tags (1)
0 Karma

kamlesh_vaghela
SplunkTrust
SplunkTrust

@Satya_P 

https://host:<mgmt_port>/services/saved/searches

 

http://localhost:8089/servicesNS/-/app/saved/searches?search=eai:acl.owner%3Duser_name

This endpoint will gives you list of searches.

 

Check this link for more: https://docs.splunk.com/Documentation/Splunk/8.2.1/RESTREF/RESTsearch#saved.2Fsearches

You can try SPL also.

| rest /servicesNS/-/-/saved/searches splunk_server=local

 

https://docs.splunk.com/Documentation/Splunk/latest/RESTREF/RESTconf#configs.2Fconf-.7Bfile.7D

Similarly you can get list of macros.

curl -k -u admin:pass https://localhost:8089/services/configs/conf-macros

 

| rest /servicesNS/-/-/admin/macros count=0 splunk_server=local

 

With Python SDK check this link. You will find example code there.

https://dev.splunk.com/enterprise/docs/devtools/python/sdk-python/howtousesplunkpython/howtowork/

I hope this will help you.

Thanks
KV
▄︻̷̿┻̿═━一

If any of my reply helps you to solve the problem Or gain knowledge, an upvote would be appreciated.

Get Updates on the Splunk Community!

October Community Champions: A Shoutout to Our Contributors!

As October comes to a close, we want to take a moment to celebrate the people who make the Splunk Community ...

Community Content Calendar, November Edition

Welcome to the November edition of our Community Spotlight! Each month, we dive into the Splunk Community to ...

Stay Connected: Your Guide to November Tech Talks, Office Hours, and Webinars!

What are Community Office Hours? Community Office Hours is an interactive 60-minute Zoom series where ...