This example pipeline demonstrates how to use the Splunk Writer and Splunk Search Snaps to write data into Splunk repository and further get the required data from Splunk.
-
Configure the File Reader Snap to read a JSON file:
-
Configure the Splunk Writer Snap with Splunk index value to index the raw event data and write to the Splunk repository in the form of searchable events.
Splunk Writer Snap configuration |
Splunk Writer Snap output |
|
|
-
Configure the Splunk Search Snap by specifying the index name that was assigned to the written file in the Search query field.
On validation, the Snap fetches the JSON file content from the Splunk repository along with the assigned index value.
Splunk Search Snap configuration |
Splunk Search Snap output |
|
|
To successfully reuse pipelines:
- Download and import the pipeline into SnapLogic.
- Configure Snap accounts as applicable.
- Provide pipeline parameters as applicable.