Splunk Enterprise

How do I find a list (via SPL) of damaged Lookups or the ones that are broken? Thank u in advance.

SamHTexas
Builder

I also need to see who may have created the lookup. After finding the "broken Lookups list" was planning to fix them. Thank u a million

Labels (1)
Tags (1)
0 Karma

ITWhisperer
SplunkTrust
SplunkTrust

How do you define broken in this context?

0 Karma

SamHTexas
Builder

@ITWhisperer wrote:

How do you define broken in this context?


The ones that error out & don't work.

Tags (1)
0 Karma

SamHTexas
Builder

Thank u champ for your message. I have newly started seeing "could not load lookup=LOOKUP_auto_admin_looup" errors. The error reads: splunk_indx.aws........could not load lookup xxxx. 

Tags (1)
0 Karma
Get Updates on the Splunk Community!

Now Available: Cisco Talos Threat Intelligence Integrations for Splunk Security Cloud ...

At .conf24, we shared that we were in the process of integrating Cisco Talos threat intelligence into Splunk ...

Preparing your Splunk Environment for OpenSSL3

The Splunk platform will transition to OpenSSL version 3 in a future release. Actions are required to prepare ...

Easily Improve Agent Saturation with the Splunk Add-on for OpenTelemetry Collector

Agent Saturation What and Whys In application performance monitoring, saturation is defined as the total load ...