Splunk Search

extract code

ryosefi
New Member

Once I have filter the data I need using search App I wish to extract the code (Java or python or other) for future use. is it possible?

Tags (1)
0 Karma

lguinn2
Legend

When you run a search, you can download your output. There is an icon beneath the search box that has a down-arrow; this is the Export button. Click it, choose "Raw Events" and name the file. It will be created on your client machine (PC, laptop, whatever).
It will be a simple text file and you can then do whatever you want to it.

0 Karma

ryosefi
New Member

thanks 🙂 .

0 Karma

lguinn2
Legend

Yes, but what do you mean by "extract"? This word has a particular meaning in Splunk.

Do you want to output the code to a file? Do you want to create a report, etc?

0 Karma

ryosefi
New Member

Yes I wish to output the code to a file.

0 Karma

ryosefi
New Member

I wish to output the code and to be able to run it by itself on a laptop that has no splunk installed

0 Karma
Get Updates on the Splunk Community!

More Ways To Control Your Costs With Archived Metrics | Register for Tech Talk

Tuesday, May 14, 2024  |  11AM PT / 2PM ET Register to Attend Join us for this Tech Talk and learn how to ...

.conf24 | Personalize your .conf experience with Learning Paths!

Personalize your .conf24 Experience Learning paths allow you to level up your skill sets and dive deeper ...

Threat Hunting Unlocked: How to Uplevel Your Threat Hunting With the PEAK Framework ...

WATCH NOWAs AI starts tackling low level alerts, it's more critical than ever to uplevel your threat hunting ...