Getting Data In

Reading data from DBF files

reggie_123
Explorer

Hi,

How can DBF files from Windows Server 2008 be read into splunk?

Tags (1)
0 Karma

woodcock
Esteemed Legend

You need the unarchive_cmd option described in this blog post:
http://blogs.splunk.com/2011/07/19/the-naughty-bits-how-to-splunk-binary-logfiles/

Alternatively, you can do a scripted input or a scripted lookup where you call another utility to convert to a plain text format (like HTML):
http://docs.splunk.com/Documentation/Splunk/latest/AdvancedDev/ScriptedInputsIntro
http://docs.splunk.com/Documentation/Splunk/6.4.1/Knowledge/Configureexternallookups

Here are some that can help (I have NOT tried any of them):
http://dbf-file-viewer.soft112.com/
http://dbfviewer.com/

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Deep Dive: Accelerate threat investigation with Splunk’s AI Assistant in Security

AI is one of the biggest topics in the market today, and for security teams, its value goes far beyond the ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

Detection Engineering Office Hours: Real-World Troubleshooting & Q&A

[REGISTER HERE] This thread is for the Community Office Hours session on Detection Engineering Office Hours: ...