Splunk Dev

is it possible outputlookup from python script

gots
Path Finder

I trying to create leases table from log.
For this task i have write python script which prepare data for lookup.
Is it possible to write this data back to splunk for using them in lookup command.
So i need something like outputlookup, but from python script.

Thank you.

Tags (2)
0 Karma

DalJeanis
Legend

Yes. One way is you could configure the python script to output the lookup table and put it somewhere that splunk could see it, and configure an external lookup within splunk to get it as needed or as updated. (for instance, by monitoring the landing directory for changes.)

http://docs.splunk.com/Documentation/Splunk/latest/Knowledge/Configureexternallookups

Here's another good source of links - https://answers.splunk.com/answers/377934/use-rest-to-create-a-lookup.html

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Deep Dive: Accelerate threat investigation with Splunk’s AI Assistant in Security

AI is one of the biggest topics in the market today, and for security teams, its value goes far beyond the ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

Detection Engineering Office Hours: Real-World Troubleshooting & Q&A

[REGISTER HERE] This thread is for the Community Office Hours session on Detection Engineering Office Hours: ...