Splunk Search

getting the list of all saved searches

kteng2024
Path Finder

hi,

can i please know the query to list all the saved searches and query used for those saved searches , user id .

0 Karma
1 Solution

woodcock
Esteemed Legend

Like this:

|rest/servicesNS/-/-/saved/searches

Then add something like this:

| fields title eai:acl.app description search disabled triggered_alert_count actions action.script.filename alert.severity cron_schedule

View solution in original post

woodcock
Esteemed Legend

Like this:

|rest/servicesNS/-/-/saved/searches

Then add something like this:

| fields title eai:acl.app description search disabled triggered_alert_count actions action.script.filename alert.severity cron_schedule
Get Updates on the Splunk Community!

Index This | I am a number, but when you add ‘G’ to me, I go away. What number am I?

March 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...

What’s New in Splunk App for PCI Compliance 5.3.1?

The Splunk App for PCI Compliance allows customers to extend the power of their existing Splunk solution with ...

Extending Observability Content to Splunk Cloud

Register to join us !   In this Extending Observability Content to Splunk Cloud Tech Talk, you'll see how to ...