Splunk Search

Windows text editor with syntax highlighting for Splunk conf file?

bmacias84
Champion

Hello can anyone recommend a Windows editor that has syntax highlighting for Splunk .conf files? Also if possible one that already has a pre-built language/syntax file? Thanks in advance.

Cheers,

1 Solution

bmacias84
Champion

Ok, I have decided to use Notepad++ since I am already familiar with it. With that I have built a User Defined Language file for Splunk’s .conf files that highlights stanzas, system defined variables, most of setting keys and is case sensitive which will allowing you to see typos. It works best on a black background. It has been posted on Notepad++ Sourceforge wiki page called SPlunk configuration. Feel free to contact me regarding bugs. Hope this helps others in the community.

Personally I was tried of eye strain and typos.

Cheers

View solution in original post

theertpr
Explorer

sublime 3 is also a good visual editor that works on different OS.

bmacias84
Champion

Ok, I have decided to use Notepad++ since I am already familiar with it. With that I have built a User Defined Language file for Splunk’s .conf files that highlights stanzas, system defined variables, most of setting keys and is case sensitive which will allowing you to see typos. It works best on a black background. It has been posted on Notepad++ Sourceforge wiki page called SPlunk configuration. Feel free to contact me regarding bugs. Hope this helps others in the community.

Personally I was tried of eye strain and typos.

Cheers

bmacias84
Champion

Notepad++ Sourceforge wiki page is unavailable. For those still interested in this file visit https://github.com/httpstergeek/npp_splunk_conf_udl.

0 Karma

bmacias84
Champion

I will post the instructions tonight.

0 Karma

jumper4000
Explorer

I haven't been able to get it work yet, but this should be very helpful. Thanks very much. Do you know of anyway to setup syntax highlighting for search queries?

0 Karma
Get Updates on the Splunk Community!

.conf24 | Registration Open!

Hello, hello! I come bearing good news: Registration for .conf24 is now open!   conf is Splunk’s rad annual ...

ICYMI - Check out the latest releases of Splunk Edge Processor

Splunk is pleased to announce the latest enhancements to Splunk Edge Processor.  HEC Receiver authorization ...

Introducing the 2024 SplunkTrust!

Hello, Splunk Community! We are beyond thrilled to announce our newest group of SplunkTrust members!  The ...