How to send splunk events into ftp server.based on scheduled time
Is it possible to ftp a report to a FTP server?
There are lot of examples available on internet.
1.) write a custom search command in python, which pushes events to the ftp.
Basics of writing a search command here:
2.) make a search with that command and store that as scheduled report.
eg.: index = * foo="bar" | customsearchcommandforftpupload