Deployment Architecture

Invoke Script in Splunk

sanjubaba
Path Finder

Is it possible to invoke powershell script in Splunk?

Labels (2)
0 Karma

gcusello
SplunkTrust
SplunkTrust

Hi @sanjubaba,

I think that you're speaking of using a Powershell script for data input.

Anyway, you can use a scripted input (for more infos see at https://docs.splunk.com/Documentation/Splunk/latest/AdvancedDev/ScriptedInputsIntro ).

In addition, you could see the Splunk_TA_Windows that uses many PS scripts (https://splunkbase.splunk.com/app/742/).

In few words, you can use the PS script in two ways:

  • writing a file:
    • create a script that writes results in a file,
    • put it in the bin folder of your app,
    • schedule it in Windows scheduler,
    • read the file with a monitor input;
  • Directly sending output to Splunk:
    • create a script that send output to video,
    • put it in the bin folder of your app,
    • schedule it in inputs.conf,
    • Universal Forwarder, executes it following the setted configuration and output is directly sent to Splunk.

Second choice is better because you can manage it all in Splunk.

Ciao.

Giuseppe

0 Karma
Get Updates on the Splunk Community!

Index This | I’m short for "configuration file.” What am I?

May 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with a Special ...

New Articles from Academic Learning Partners, Help Expand Lantern’s Use Case Library, ...

Splunk Lantern is a Splunk customer success center that provides advice from Splunk experts on valuable data ...

Your Guide to SPL2 at .conf24!

So, you’re headed to .conf24? You’re in for a good time. Las Vegas weather is just *chef’s kiss* beautiful in ...