- Mark as New
- Bookmark Message
- Subscribe to Message
- Mute Message
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Is it possible to use Python (or other languages) to get logs that originated from specific hosts?
sameratassi
Engager
03-31-2022
07:11 AM
Hi,
Is it possible to use Python (or other languages) to get logs that originated from specific hosts?
For example, search for a list of hosts and return the logs that were ingested during a specific date range.
Thanks !
- Mark as New
- Bookmark Message
- Subscribe to Message
- Mute Message
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content

mayurr98
Super Champion
03-31-2022
10:32 AM
Hello , if its a dynamic list of hosts you could create a lookup table for hosts using settings » Lookups » Lookup table files » New Table Lookup File.
and use below search
index=<your_index> [inputlookup hosts.csv | table host ]
Select date range on the top right side of the search bar to get the appropriate results.
let me know if this helps!
- Mark as New
- Bookmark Message
- Subscribe to Message
- Mute Message
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content

richgalloway

SplunkTrust
03-31-2022
09:41 AM
The SPL for that would look something like this.
index=foo earliest=bar latest=baz [
<<your search for a list of hosts>>
| field host
| format
]
Crafting that in Python (or other languages) is an exercise left to the reader.
---
If this reply helps you, Karma would be appreciated.
If this reply helps you, Karma would be appreciated.
