Splunk Search

How can I create lookup table file(csv file) automatically?

tkdguq0110
Path Finder

I just want to create csv file automatically everyday

for example, today just is created 20200417.csv
tomorrow will be created 20200418.csv ...

Is it possible??

Tags (1)
0 Karma
1 Solution

manjunathmeti
Champion

You can use map command and get the data in csv using below query. You can append OR join below query with your main search.

| makeresults | eval date = strftime(now(), "%Y%m%d") | map search="| inputlookup $date$.csv"

tkdguq0110
Path Finder

thanks for your help!

0 Karma

tkdguq0110
Path Finder

thanks for your help!

0 Karma
Get Updates on the Splunk Community!

Prove Your Splunk Prowess at .conf25—No Prereqs Required!

Your Next Big Security Credential: No Prerequisites Needed We know you’ve got the skills, and now, earning the ...

Splunk Observability Cloud's AI Assistant in Action Series: Observability as Code

This is the sixth post in the Splunk Observability Cloud’s AI Assistant in Action series that digs into how to ...

Splunk Answers Content Calendar, July Edition I

Hello Community! Welcome to another month of Community Content Calendar series! For the month of July, we will ...