Looked through existing questions and nothing seems to flat out answer it ... so I'm asking 🙂 If there a crontab like feature in Splunk for running scripts on remote systems ? Not looking for scheduled searched and not asking about alert scripts (I think ...).
Just checking if a script can be scheduled within Splunk to be run at specific times on a remote system (for data ingestion ultimately).
Thank you.
There is!
Check out this doc:
https://docs.splunk.com/Documentation/Splunk/7.3.1/Admin/Inputsconf
[script://<cmd>]
interval = [<decimal>|<cron schedule>]
There is!
Check out this doc:
https://docs.splunk.com/Documentation/Splunk/7.3.1/Admin/Inputsconf
[script://<cmd>]
interval = [<decimal>|<cron schedule>]