Splunk Dev

How to collect data to index in batches

santosh121
Explorer

Dear All,

 

 I am trying to push some records in patches to splunk i want it to be automated.

 

Usecase: 

 

 We have 1 lakh + records in index and we want to push those 1 lakh+ records in batches  of 500 as we will run some logic on them. How can i collect all these records in loop in splunk.

can i collect in "for loop" or only way is via python or node sdk?

 

Regards,

Santosh

Labels (1)
0 Karma

aasabatini
Motivator

Hi @santosh121 

you can use also sh batch in splunk, with the scripted inputs you can schedule when the events are loaded (CRON), anyway it's better read the documentation.

https://docs.splunk.com/Documentation/Splunk/latest/AdvancedDev/ScriptSetup

 

 

“The answer is out there, Neo, and it’s looking for you, and it will find you if you want it to.”
0 Karma
Get Updates on the Splunk Community!

Announcing Scheduled Export GA for Dashboard Studio

We're excited to announce the general availability of Scheduled Export for Dashboard Studio. Starting in ...

Extending Observability Content to Splunk Cloud

Watch Now!   In this Extending Observability Content to Splunk Cloud Tech Talk, you'll see how to leverage ...

More Control Over Your Monitoring Costs with Archived Metrics GA in US-AWS!

What if there was a way you could keep all the metrics data you need while saving on storage costs?This is now ...