Splunk Enterprise

How to send files from Splunk to SharePointOnline?

johnjohn
Engager

Hi All,

I need to automate the execution of specific queries in Splunk Enterprise on a weekly basis, export the results as CSV files, and upload them to a designated SharePoint Online folder for visualization purposes. Based on your experience, what are the available options, and which one would you recommend as the best?

 

Thanks,

John

Labels (1)
Tags (2)
0 Karma

johnjohn
Engager

Thank you Will, much appreciated.

John

livehybrid
SplunkTrust
SplunkTrust

Hi @johnjohn 

I know of 2 ways to achieve this, but there could be others.

  1. Enable incoming e-mail support for a list or library on Sharepoint - Check out https://support.microsoft.com/en-gb/office/enable-incoming-e-mail-support-for-a-list-or-library-dcaf... for more information on this. 
    You would then configure a scheduled search with an email alert action to send the CSV results to the email provided by Sharepoint and this would be added to the library.
  2. Use Microsoft Power Automate, as above you would use a scheduled search to send the CSV results.
    1. Create a Flow triggered by email:

      • Use the "When a new email arrives (V3)" trigger from Office 365 Outlook connector (This requires a O365/Outlook.com email account).
      • Add a condition to filter for emails with CSV attachments

    2. Configure the "Create file" action:

      • Connect to your SharePoint site
      • Select the destination library/folder
      • Choose to save the attachment from the email
      • Set dynamic content for the file name (keep original or create custom naming)

Please let me know how you get on and consider adding karma to this or any other answer if it has helped.
Regards

Will

Get Updates on the Splunk Community!

Observability Unlocked: Kubernetes Monitoring with Splunk Observability Cloud

  Ready to master Kubernetes and cloud monitoring like the pros?Join Splunk’s Growth Engineering team for an ...

Wrapping Up Cybersecurity Awareness Month

October might be wrapping up, but for Splunk Education, cybersecurity awareness never goes out of season. ...

🌟 From Audit Chaos to Clarity: Welcoming Audit Trail v2

🗣 You Spoke, We Listened  Audit Trail v2 wasn’t written in isolation—it was shaped by your voices.  In ...