Splunk Search

SplunkJS Getting collection name based on a lookup

MisteRious
Explorer

When you define a new kvstore based collection you use stanza with both new collection name and the base lookup for the collection. My question is - how to get the collection name based on the lookup, preferably from SplunkJS, but any hint would be nice.

Regards,
Mikolaj

0 Karma

MisteRious
Explorer

For anyone curious about how to do that - the only way to achieve this seems to be using searchamanger to launch a query that reads the config file itself, detects every stanza and reads it's properties. Than it needs to create a two-dimensional array containing the collection name + lookup pairs.... If anyone finds a better solution, please let me know.

0 Karma
Get Updates on the Splunk Community!

Observe and Secure All Apps with Splunk

  Join Us for Our Next Tech Talk: Observe and Secure All Apps with SplunkAs organizations continue to innovate ...

Splunk Decoded: Business Transactions vs Business IQ

It’s the morning of Black Friday, and your e-commerce site is handling 10x normal traffic. Orders are flowing, ...

Fastest way to demo Observability

I’ve been having a lot of fun learning about Kubernetes and Observability. I set myself an interesting ...