Let's say Splunk keeps the last job artifacts from an accelerated search which spans the last 7 days.
What's the simplest way to access the job equivalent to last Monday through the API?
Here are a couple ideas. Let me know if you're looking for something more specific. 🙂
View solution in original post
@splunk_zen any luck?
What exactly do you wish to fetch using the API?