Languages Searches Applications

Want to share searches?

Search Applications allow you to download Splunk searches other people have created, or to share ones you've made! Even cooler, an Application can have more than one type of content, so you can add searches to any Application.

Not a Splunk user? Download Splunk, set up your Splunk server, and then install your Applications(s) to extend your server.

Splunk Parse

Splunk Parse (splunk_parse.py) is a python script you can set as your alert action on a saved search. It reads in the fields a saved search passing along and parses the corresponding saved search log file which is in CSV format. The parsing spits out the originating host and the full original problem. In this version it's feed to my ticketing system, but the output action can be easily changed.

Author: shaggy Type: Searches, Integration, Custom Processing, Alerts
Rating: Awaiting 3 votes Added: 8 months ago
Downloads: 119 Last Updated: 8 months ago
License: Creative Commons Price: Free
Categories: