Splunk Dev

How to collect data to index in batches

santosh121
Explorer

Dear All,

 

 I am trying to push some records in patches to splunk i want it to be automated.

 

Usecase: 

 

 We have 1 lakh + records in index and we want to push those 1 lakh+ records in batches  of 500 as we will run some logic on them. How can i collect all these records in loop in splunk.

can i collect in "for loop" or only way is via python or node sdk?

 

Regards,

Santosh

Labels (1)
0 Karma

aasabatini
Motivator

Hi @santosh121 

you can use also sh batch in splunk, with the scripted inputs you can schedule when the events are loaded (CRON), anyway it's better read the documentation.

https://docs.splunk.com/Documentation/Splunk/latest/AdvancedDev/ScriptSetup

 

 

“The answer is out there, Neo, and it’s looking for you, and it will find you if you want it to.”
0 Karma
Get Updates on the Splunk Community!

Splunk Custom Visualizations App End of Life

The Splunk Custom Visualizations apps End of Life for SimpleXML will reach end of support on Dec 21, 2024, ...

Introducing Splunk Enterprise 9.2

WATCH HERE! Watch this Tech Talk to learn about the latest features and enhancements shipped in the new Splunk ...

Adoption of RUM and APM at Splunk

    Unleash the power of Splunk Observability   Watch Now In this can't miss Tech Talk! The Splunk Growth ...