Last Updated
July 13, 2023
This SA provides a custom search command which updates lookup file from the staging directory `$SPLUNK_HOME/var/run/splunk/lookup_tmp`. This is useful if you update your lookup files using cron, scp, rsync, place any file transfer tool name here in a SHC to tell Splunk to re-sync the file to all peers.
(0)
Categories
Created By
Type
Downloads
Splunk Answers
Resources