Hi, thanks for your reply - I had a good read of the link, but I don't think lookups address our requirements. They seem to be for configuring static lookups that Splunk cross-references with existing data. What we want is to store regularly generated static data in Splunk, so we can report on it.
Example:
CSV data generated on day 1:
Col1,Col2
Testing,123
Test,456
TestTest,789
We just need that raw data accessible in Splunk, so we can graph it.
And on day 2, the data gets regenerated:
Col1,Col2
AnotherTest,999
Test,111
HelloWorld,222
We want that pushed up to Splunk to replace the existing data from day 1.
Is this possible?
... View more