Splunk Dev

is it possible outputlookup from python script

gots
Path Finder

I trying to create leases table from log.
For this task i have write python script which prepare data for lookup.
Is it possible to write this data back to splunk for using them in lookup command.
So i need something like outputlookup, but from python script.

Thank you.

Tags (2)
0 Karma

DalJeanis
Legend

Yes. One way is you could configure the python script to output the lookup table and put it somewhere that splunk could see it, and configure an external lookup within splunk to get it as needed or as updated. (for instance, by monitoring the landing directory for changes.)

http://docs.splunk.com/Documentation/Splunk/latest/Knowledge/Configureexternallookups

Here's another good source of links - https://answers.splunk.com/answers/377934/use-rest-to-create-a-lookup.html

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

A Four-Part Event Series: Full Stack Observability For the AI Era

As AI reshapes applications, infrastructure, and the way teams operate, the traditional boundaries of ...

SOC4Kafka - New Kafka Connector Powered by OpenTelemetry

The new SOC4Kafka connector, built on OpenTelemetry, enables the collection of Kafka messages and forwards ...

Event Series: Level up your SOC: Advancing with Splunk Enterprise Security

AI has fundamentally raised the stakes for security operations, and this three-part series is your guide to ...