Hello,
I have a user wanting to send a Splunk report (.csv) to a network drive. I read your post on "Trigger a PDF via the command line". I believe my particular task is a little different but follows the same concept.
Can you kindly provide some guidance?
Much Appreciated,
Cheers!!!
A better way to do this is to use the "Run a Script" alert action (after you create a script to do the copy). Yes, this alert action is deprecated but I use it often and there is no way that Splunk will be removing it from the product.
The way that I do it is to come up with a file-name-prefix convention (like CopyMeToDriveF_
) and then use | outputcsv CopyMeToDriveF_whatever.csv
on the end of your search. Then you have to setup a cron or powershell job to do: cp $SPLUNK_HOME/var/run/dispatch/splunk/CopyMeToDriveF* F:
or similar.
Hi
Have you seen this post?
I have not but will give it a read, thank you.