Splunk Search

download lookup table files

abhiram
Explorer

Hi,
I have some loopup table files in one of my app. Is there anyway to see the inner query of the lookup table and how to download/view the csv file ?

Tags (1)
0 Karma
1 Solution

Ayn
Legend

I don't really understand what you mean by "inner query", so I'm going to pass on that, but what you could do to see the contents of your lookup file is use the inputlookup command.

View solution in original post

0 Karma

Ayn
Legend

I don't really understand what you mean by "inner query", so I'm going to pass on that, but what you could do to see the contents of your lookup file is use the inputlookup command.

0 Karma

abhiram
Explorer

thanks for the answer ayn.
What I mean is how to exactly use lookuptable command syntax. If we use command | inputlookup testLookup , we get the results in table format. There is something search that made results to come. Also how to use lookuptable command against an existing sourcetype...can you help in syntax how to use the OUTPUT arguement with inputlookup command.

0 Karma
Career Survey
First 500 qualified respondents will receive a $20 gift card! Tell us about your professional Splunk journey.
Get Updates on the Splunk Community!

Tech Talk Recap | Mastering Threat Hunting

Mastering Threat HuntingDive into the world of threat hunting, exploring the key differences between ...

Observability for AI Applications: Troubleshooting Latency

If you’re working with proprietary company data, you’re probably going to have a locally hosted LLM or many ...

Splunk AI Assistant for SPL vs. ChatGPT: Which One is Better?

In the age of AI, every tool promises to make our lives easier. From summarizing content to writing code, ...