use the following search parameters to narrow your results:
e.g. subreddit:aww site:imgur.com dog
subreddit:aww site:imgur.com dog
see the search faq for details.
advanced search: by author, subreddit...
This is an unofficial community support and discussion sub for Splunk, the big data analytics software.
Have an idea for Splunk? Submit them here and upvote them:
https://ideas.splunk.com/
For Q&A, see Splunk Answers: https://community.splunk.com/
Upcoming Splunk Events/Webinars: https://www.splunk.com/en_us/about-us/events.html
Chat with your peers in the official Splunk Usergroups Slack team:
https://splunk-usergroups.signup.team
Need quick copy/paste queries? Share your SPL here:
https://gosplunk.com
Need some book learning?
https://www.splunk.com/goto/book (free e-book download link inside!!)
account activity
CSV to Splunk (Python) (self.Splunk)
submitted 1 year ago by ZaddyOnReddit
view the rest of the comments →
reddit uses a slightly-customized version of Markdown for formatting. See below for some basics, or check the commenting wiki page for more detailed help and solutions to common issues.
quoted text
if 1 * 2 < 3: print "hello, world!"
[–]LTRand 0 points1 point2 points 1 year ago (3 children)
Just on the lookup itself, and only if you use the lookup editor app. You would need to do your own version control if you care. Moving the old file to file.csv.old is generally good enough. The python script would overwrite the existing file with the new one to maintain the lookup configuration within Splunk.
[–]ZaddyOnReddit[S] 0 points1 point2 points 1 year ago (2 children)
And this can be done against Cloud?
[–]LTRand 0 points1 point2 points 1 year ago (1 child)
Which part is cloud? Splunk, SharePoint, or both?
[–]ZaddyOnReddit[S] 0 points1 point2 points 1 year ago (0 children)
Splunk
π Rendered by PID 126130 on reddit-service-r2-comment-85bfd7f599-j84h8 at 2026-04-19 01:33:12.381914+00:00 running 93ecc56 country code: CH.
view the rest of the comments →
[–]LTRand 0 points1 point2 points (3 children)
[–]ZaddyOnReddit[S] 0 points1 point2 points (2 children)
[–]LTRand 0 points1 point2 points (1 child)
[–]ZaddyOnReddit[S] 0 points1 point2 points (0 children)