Hello everybody,
I'm using an spl query that extracts some values from a lookup and sends them to a web API via POST request (for this i'm using the WebTools add-on).
To send data formatted as reported in the api swagger, I'm using the Splunk command "tojson" to convert Spl query results to Json in my test instance.
Since the tojson command is really new (props to Splunk for adding this!) and was introduced from 8.2, is there a way to do the same in previous Splunk versions?
Splunk Query: |inputlookup l2d.csv |eventstats values(tp) as id | table id,code | tojson <...curl using raw field from tojson>
Json format expected and produced with tojson command: {"id":["id1","id2"],"code":"00001"}
Thank you for the attention, have a nice day,
Hello @D0do ,
I believe this is what you're looking for:
https://community.splunk.com/t5/Getting-Data-In/How-to-convert-an-event-INTO-JSON/m-p/288299
Thanks,
S
***If this helped, please accept it as a solution. It helps others to find the solution for similar issues quickly.***
Thanks @shivanshu1593, much appreciated
Hello @D0do ,
I believe this is what you're looking for:
https://community.splunk.com/t5/Getting-Data-In/How-to-convert-an-event-INTO-JSON/m-p/288299
Thanks,
S
***If this helped, please accept it as a solution. It helps others to find the solution for similar issues quickly.***