Deployment Architecture

Programatically adding and removing mounts for indexing

msacks
Explorer

I would like to know how I might go about automatically adding and removing log mounts for this environment, and making sure the corresponding data sources that I am changing to be indexed also update a specific custom application that encompasses that mount as well.

Tags (2)
0 Karma

MuS
SplunkTrust
SplunkTrust

Hi msacks

yes, you can do this with the REST API, read more here: RESTconfigurations

cheers

0 Karma

msacks
Explorer

I second gkanapathy comment. It's really unclear what you are trying >to do, and more importantly, what you are trying to do with splunk.

Programmatically update my Splunk configurations using an API.

0 Karma

Lowell
Super Champion

No response. I'm giving a down vote.

0 Karma

Lowell
Super Champion

I second gkanapathy comment. It's really unclear what you are trying to do, and more importantly, what you are trying to do with splunk. You can click the "edit" button under your question and add some additional detail.

0 Karma

gkanapathy
Splunk Employee
Splunk Employee

I'm confused about what you're looking for. Splunk doesn't really take care of mounting or unmounting filesystems, and I'm not sure what you mean by "update a specific application". You mean if you change out a filesystem and path, you have to update the inputs.conf?

0 Karma
Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Dynamic formatting from XML events

This challenge was first posted on Slack #puzzles channelFor a previous puzzle, I needed a set of fixed-length ...

Enter the Agentic Era with Splunk AI Assistant for SPL 1.4

  🚀 Your data just got a serious AI upgrade — are you ready? Say hello to the Agentic Era with the ...

Stronger Security with Federated Search for S3, GCP SQL & Australian Threat ...

Splunk Lantern is a Splunk customer success center that provides advice from Splunk experts on valuable data ...