Splunk Search

How to switch the CMDB lookups in splunk to the KV store ?

srampally
Path Finder

We currently have lookups and want to move to KV store. What and how can we do that

Tags (1)

lekanneer
Loves-to-Learn Lots

If you're looking for an efficient and functional ServiceNow to Splunk integration (also CMDB) take a look at: https://www.thedutchdatadifference.nl/splunk-servicenow/

I created that solution and continuously adding new features. One of the use cases I have done is comparing data available in Splunk with what is in CMDB.

0 Karma

woodcock
Esteemed Legend

Are you using ES or your own custom search environment?

0 Karma

srampally
Path Finder

we are using ES

0 Karma

woodcock
Esteemed Legend

So far as I know, this is not supported. What is prompting your move to KV Store? Are you in SHC? If so, then a move to KV Store is suicide anyway.

0 Karma
Get Updates on the Splunk Community!

See just what you’ve been missing | Observability tracks at Splunk University

Looking to sharpen your observability skills so you can better understand how to collect and analyze data from ...

Weezer at .conf25? Say it ain’t so!

Hello Splunkers, The countdown to .conf25 is on-and we've just turned up the volume! We're thrilled to ...

How SC4S Makes Suricata Logs Ingestion Simple

Network security monitoring has become increasingly critical for organizations of all sizes. Splunk has ...