Splunk Search

how to start a Splunk search from a bash script

juancnunezc
New Member

I am pretty new to Splunk. I am looking for a way to start a Splunk search from a bash script. The scrip will be scheduled using cron. It will run periodically checking for a file. If the file has been received, it should trigger a Splunk search. Is is possible to do that? How? Any clue?

Thanks

Tags (2)
0 Karma

Ayn
Legend
0 Karma

juancnunezc
New Member

Ok, I did not know that. I am running Splunk a in Linux system and files with performance data from Windows will be received peridiocally. So, I can know if these file have been received using Splunk, right? How?. Could I trigger a search over those files?

0 Karma

richgalloway
SplunkTrust
SplunkTrust

Why use bash? Splunk can monitor files and schedule scripts natively.

---
If this reply helps you, Karma would be appreciated.
Get Updates on the Splunk Community!

Building Reliable Asset and Identity Frameworks in Splunk ES

 Accurate asset and identity resolution is the backbone of security operations. Without it, alerts are ...

Cloud Monitoring Console - Unlocking Greater Visibility in SVC Usage Reporting

For Splunk Cloud customers, understanding and optimizing Splunk Virtual Compute (SVC) usage and resource ...

Automatic Discovery Part 3: Practical Use Cases

If you’ve enabled Automatic Discovery in your install of the Splunk Distribution of the OpenTelemetry ...