Getting Data In

Logging output from clean-dispatch

rmorlen
Splunk Employee
Splunk Employee

I have a script that runs when certain events occur. This script cleans the dispatch directory. I would like to log the output of this command so that I can track when the script runs and what it did.

I am not a linux guru and have tried:

/opt/splunk/bin/splunk cmd splunkd clean-dispatch /temp -1d -1d | tee -a /opt/splunk/var/log/splunk/internalscripts.log

and

/opt/splunk/bin/splunk cmd splunkd clean-dispatch /temp -1d -1d >> tee -a /opt/splunk/var/log/splunk/internalscripts.log

Neither writes to the logfile. Is there another way of writing the output to the logfile?

Thanks.

Tags (1)
0 Karma

rmorlen
Splunk Employee
Splunk Employee

Sorry for wasting time. The command below works (not sure why it didn't show up in the log before):

/opt/splunk/bin/splunk cmd splunkd clean-dispatch /temp -1d -1d | tee -a /opt/splunk/var/log/splunk/internalscripts.log

0 Karma

rmorlen
Splunk Employee
Splunk Employee

The command /opt/splunk/bin/splunk cmd splunkd clean-dispatch /temp -1d -1d works fine.

0 Karma

jonuwz
Influencer

The 2nd option above should read
/opt/splunk/bin/splunk cmd splunkd clean-dispatch /temp -1d -1d >> /opt/splunk/var/log/splunk/internalscripts.log

Also, does /temp exist ? Maybe this should be /tmp ?

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

Modernize your Splunk Apps – Introducing Python 3.13 in Splunk

We are excited to announce that the upcoming releases of Splunk Enterprise 10.2.x and Splunk Cloud Platform ...

Step into “Hunt the Insider: An Splunk ES Premier Mystery” to catch a cybercriminal ...

After a whole week of being on call, you fell asleep on your keyboard, and you hit a sequence of buttons that ...