Reporting

Using DBQuery to update DB table data

kenchisho
Path Finder

I am using the "dbquery" command to update tables in MSSQL 2008.

The search is something like:

| dbquery test_db "UPDATE test_table1, test_table2 SET Data1='test1', Data2='test2', Status='Closed' WHERE AccountNumber='1234567890988'"

The inline search updates the database as expected. However the search provides no results which I can use to tell the user if it succeded or not.

The Job inspector shows a message... Update statement executed. 1 rows affected. Is it possible to display this message as a search result?

tachifelix
Path Finder

add select command after update like "select Data1, Data2, Status from test_table1, test_table2 where Status='Closed' and Data2='test2' and Data1='test1' "

Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Best Practices: Splunk auto adjust pipeline queue

When you enable autoAdjustQueue in Splunk, maxSize should be understood as the queue size Splunk starts with ...

Laser Bananas and Edge Hubs: Exploring Operational Technology (OT) Data Through a ...

  OT is a different environment to traditional IT and can have interesting challenges when interfacing the ...

Event Series: Mastering AI Tokenomics and Splunk Agent Observability

Beyond the Black Box: Correlating AI Performance and Tokenomics with Splunk Agent Observability   As ...