Reporting

Send search results to a MySQL database periodically

MaximeM
Explorer

Hi there.

I would like to send some data from a periodic search to a MySQL database on a remote server.
What are my options ?

Tags (3)
0 Karma

jharty_splunk
Splunk Employee
Splunk Employee

Try using the MySQL connector
http://splunk-base.splunk.com/apps/36664/splunk-mysql-connector

Alternatively, you could output the results of the search to CSV ("| [search] | outputcsv outputfile.csv") and use Mysql Load data infile.

MaximeM
Explorer

Thanks for your answer.
I already tried to use MySQL Connector but I can't figure how to get an automated way to output my search results to my mySQL database.

0 Karma
Get Updates on the Splunk Community!

The Splunk Success Framework: Your Guide to Successful Splunk Implementations

Splunk Lantern is a customer success center that provides advice from Splunk experts on valuable data ...

Splunk Training for All: Meet Aspiring Cybersecurity Analyst, Marc Alicea

Splunk Education believes in the value of training and certification in today’s rapidly-changing data-driven ...

Investigate Security and Threat Detection with VirusTotal and Splunk Integration

As security threats and their complexities surge, security analysts deal with increased challenges and ...