Getting Data In

Splunk add-on save checkpoint

nareshkumarg
Path Finder

Hi All,

I managed to store and retrieve data using the following python command.

 # save checkpoint
 helper.save_check_point(key, state)
 # delete checkpoint
 helper.delete_check_point(key)
 # get checkpoint
 state = helper.get_check_point(key)

I would like to know where the data is stored and how can I check the value on Splunk.

I was checking under lookup with the name and source given for the add-on I was working on, but could not find it.

Regards,
Naresh

0 Karma
1 Solution

harsmarvania57
Ultra Champion

Hi,

Usually checkpoint stored in $SPLUNK_HOME/var/lib/splunk/modinputs/<some_name_provided_by_developer>/ , it looks like you are asking about Palo-Alto add-on.

View solution in original post

harsmarvania57
Ultra Champion

Hi,

Usually checkpoint stored in $SPLUNK_HOME/var/lib/splunk/modinputs/<some_name_provided_by_developer>/ , it looks like you are asking about Palo-Alto add-on.

nareshkumarg
Path Finder

Thanks a lot @harsmarvania57 I was able to find the value which was stored with base64.

0 Karma

nareshkumarg
Path Finder

I have developed my own add on and I want to check the value to validate the functioning of my python script.

0 Karma

harsmarvania57
Ultra Champion

Have you looked at the path which I have provided? If you can't find it then you need to provide your full python code (Hide sensitive data).

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Unlocking Unified Insights: New Gigamon Federated Search App for Splunk

In today’s data-heavy environment, organizations are caught in a data distribution dilemma. As data volumes ...

GA: New Data Management App in Splunk Platform

Streamlining Data Management: Introducing a unified experience in Splunk Managing data at scale shouldn’t feel ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...