Splunk Search

How to check if some csv is getting used in any alert/report/dashboard or not?

nehamvinchankar
Path Finder
 
Labels (1)
0 Karma

gcusello
SplunkTrust
SplunkTrust

Hi @nehamvinchankar,

in the _audit index you can find all the searches containing a string as the csv file, then there are many fields , between them also "search", so you can run something like this:

index=_audit <your_csv_file>
| stats count BY search

Ciao.

Giuseppe

Get Updates on the Splunk Community!

See just what you’ve been missing | Observability tracks at Splunk University

Looking to sharpen your observability skills so you can better understand how to collect and analyze data from ...

Weezer at .conf25? Say it ain’t so!

Hello Splunkers, The countdown to .conf25 is on-and we've just turned up the volume! We're thrilled to ...

How SC4S Makes Suricata Logs Ingestion Simple

Network security monitoring has become increasingly critical for organizations of all sizes. Splunk has ...