Splunk Search

How can I get CLI searches to appear in the Job Manager?

the_wolverine
Champion

It looks like the Job Manager currently does not allow me to track CLI searches. Is there some way I can get a jobid assigned to my CLI searches?

Tags (3)
1 Solution

the_wolverine
Champion

By default, even CLI-initiated searches are assigned a Job id. Unfortunately, these disappear immediately upcome completion of the search run. To make the Job id persist you can add '-detach true' to your search:

[/opt/splunk/bin] ./splunk search "search terms" -maxout 100000 -detach true

Job id: 1277828645.277

View solution in original post

the_wolverine
Champion

By default, even CLI-initiated searches are assigned a Job id. Unfortunately, these disappear immediately upcome completion of the search run. To make the Job id persist you can add '-detach true' to your search:

[/opt/splunk/bin] ./splunk search "search terms" -maxout 100000 -detach true

Job id: 1277828645.277

bwooden
Splunk Employee
Splunk Employee

It showed in my jobs manager on Splunk 4.1 (build 77833)

Get Updates on the Splunk Community!

Preparing your Splunk Environment for OpenSSL3

The Splunk platform will transition to OpenSSL version 3 in a future release. Actions are required to prepare ...

Deprecation of Splunk Observability Kubernetes “Classic Navigator” UI starting ...

Access to Splunk Observability Kubernetes “Classic Navigator” UI will no longer be available starting January ...

Now Available: Cisco Talos Threat Intelligence Integrations for Splunk Security Cloud ...

At .conf24, we shared that we were in the process of integrating Cisco Talos threat intelligence into Splunk ...