Getting Data In

Can not see the output of btool in windows

ddrillic
Ultra Champion

I run the following:

C:\opt\splunk\splunkforwarder\bin>splunk btool inputs list > ..\btool.text

And I get an empty file. Why?

Tags (4)
0 Karma
1 Solution

mdsnmss
SplunkTrust
SplunkTrust

I don't get results unless I run as admin. You should also specify the .exe.

C:\opt\splunk\splunkforwarder\bin\splunk.exe btool inputs list > ..\btool.text

View solution in original post

mdsnmss
SplunkTrust
SplunkTrust

I don't get results unless I run as admin. You should also specify the .exe.

C:\opt\splunk\splunkforwarder\bin\splunk.exe btool inputs list > ..\btool.text

mdsnmss
SplunkTrust
SplunkTrust

Unless you customized the install folder, it would be "C:\Program Files\SplunkUniversalForwarder\bin\splunk.exe" btool inputs list > C:\Users\user\Downloads\btool.text" by default on Windows.

ddrillic
Ultra Champion

Thank you @mdsnmss.

0 Karma

ddrillic
Ultra Champion

Interesting, my colleague also suggested to use .\splunk.exe list inputstatus instead. Which one is better?

We ended up using the Power Shell command interface.

0 Karma
Get Updates on the Splunk Community!

Infographic provides the TL;DR for the 2024 Splunk Career Impact Report

We’ve been buzzing with excitement about the recent validation of Splunk Education! The 2024 Splunk Career ...

Enterprise Security Content Update (ESCU) | New Releases

In December, the Splunk Threat Research Team had 1 release of new security content via the Enterprise Security ...

Why am I not seeing the finding in Splunk Enterprise Security Analyst Queue?

(This is the first of a series of 2 blogs). Splunk Enterprise Security is a fantastic tool that offers robust ...