This is an approach:
1) Create the saved search.
2) Create a python script to call the saved search you created. Then, save the results in csv in the directory you want.
3) Schedule the python script as a script input in Splunk.
I hope it helps.
Lp
This is an approach:
1) Create the saved search.
2) Create a python script to call the saved search you created. Then, save the results in csv in the directory you want.
3) Schedule the python script as a script input in Splunk.
I hope it helps.
Lp
My bad, it is possible through CLI. See the last comment on the accepted answer of below link.
thanks for your answer. but i want to export scheduled search result every day.
As far as I know this is not possible through any search command or using CLI (output defaults to var/run/splunk). from UI-> Export button your can save it to local disk.