Accept License Agreements

This app is provided by a third party and your right to use the app is in accordance with the license provided by that third-party licensor. Splunk is not responsible for any third-party apps and does not provide any warranty or support. If you have any questions, complaints or claims with respect to this app, please contact the licensor directly.

Thank You

Downloading Lookup File Editor
SHA256 checksum (lookup-file-editor_271.tgz) 3d1b70c6c4c473c1e95900d33f39552148b17954023ecb4f8c7343beed270ff6 SHA256 checksum (lookup-file-editor_270.tgz) 911a10778d4f218952ccbb1ef74bdbd6e97ccffe424e9719cd7089688db6d491 SHA256 checksum (lookup-file-editor_262.tgz) e038f61c2b10b4f054ccc885327d9963059037334e1f7f12a354c3ef7ea5dddb SHA256 checksum (lookup-file-editor_261.tgz) dd3761108e380c68689696494be630c0bf1abc74045427b3256a87421e40d2e0 SHA256 checksum (lookup-file-editor_260.tgz) 14a9f1b4be6fc08deffc4bd8829390915889c85b445a48e5e30ffdb27aef630d SHA256 checksum (lookup-file-editor_250.tgz) 092870226628c3104966df08fbaa31a8e57e55aeea7b233e80596d401fe5c8ee SHA256 checksum (lookup-file-editor_240.tgz) 59c28f33727a709960203abcbb7c966fff1e3dff57889cb91628c14c5f1bda04 SHA256 checksum (lookup-file-editor_234.tgz) 0cef4c62b288da6965f4a6e5f1588df8d9f605a423aded8d931dfeb407841f59 SHA256 checksum (lookup-file-editor_233.tgz) 4990d8711ff1b1b9a4141d39f7821aeaa19d0cedaaf6db7bb90d0cebe5df1fd8 SHA256 checksum (lookup-file-editor_232.tgz) b245097e9c532dc5bf334e02301814d7bebe13c06e24b0a28a97db435e16ccae SHA256 checksum (lookup-file-editor_231.tgz) 42f3244fa7fb44d14524ebcf39b2d180124a9f771b4b94b50791755603f709d6 SHA256 checksum (lookup-file-editor_23.tgz) 3faa910f54453d121ab097abd0f878effc7e1f3fb113acfba399232a87444e9b SHA256 checksum (lookup-file-editor_22.tgz) 648da3abbe7379cfed229cf24ef9a8d1171b07312e9eea3e45c4fa7ef98d258b SHA256 checksum (lookup-file-editor_212.tgz) 671e87fa1c35092ea7838082587f0e8e59aa088f77bf0d13914cea1e066c9bba SHA256 checksum (lookup-file-editor_211.tgz) 1316d3ec2ad6f427ffbf1e78cf7dd63c5b46cd7bdee02c0a8f947c7089e241b4 SHA256 checksum (lookup-file-editor_210.tgz) c9f1b4d8e959314377ae823689cf46031a1d1a0da7625ac6ec8ff01153c054c3 SHA256 checksum (lookup-file-editor_203.tgz) cb88ffd9ade27b9a0c3e7bbbe72ca997bf027db3650e2ce077fcb1e8a16ea377 SHA256 checksum (lookup-file-editor_202.tgz) e5a313f8e945f7b2cca8aed507feb887e35e1634d87a8c818e586dd61435bef6 SHA256 checksum (lookup-file-editor_201.tgz) 09390676623c3ccb95dd24c123c608a8d3436e6376758a86508cd0ab0d619b22 SHA256 checksum (lookup-file-editor_200.tgz) 512e98f895dc7ce82c4194c84d10609af0b3c8c8cd6f8cfab43252296df5694b SHA256 checksum (lookup-file-editor_141.tgz) d87936a5367a8215a56bbc58db30a25c3cf4657d0bbfbe2d2b68873eff1fd473 SHA256 checksum (lookup-file-editor_140.tgz) 31ef6b85ac34054d558ae08f15a35eb908cc60c0c0e654cd752053f48a9bcc74 SHA256 checksum (lookup-file-editor_131.tgz) 2a390742e30a9837a6e7e8f9b98c82ed441bb3c5d716feb561c0298cfb64190b SHA256 checksum (lookup-file-editor_13.tgz) e37378e3f3d8b0faf4cf7ef8b27fae2a3537db901cf27c4362a868df614fef1c SHA256 checksum (lookup-file-editor_12.tgz) 58c7909dd8d5400c23a8be4b582818021f76ab6de7d00b2a4b28310db0e83507 SHA256 checksum (lookup-file-editor_11.tgz) 7f87055afc96ba4231b6af4784686483d9d663d6053abf4bde59bf9321f6fdc7 SHA256 checksum (lookup-file-editor_10.tgz) 9b0faacf245f207f9bfed8d1fc904dd9ae45b75d238972353b45be6489e03933 SHA256 checksum (lookup-file-editor_07.tgz) 15afe8d5bef03ea2161fb9624c0f72b60326f45a231107351a2f0ff0c09db005 SHA256 checksum (lookup-file-editor_06.tgz) 9857de2f62cc857bf6e7424c0dd2e12a8a43541935d1533cca47eb3f013b2b83 SHA256 checksum (lookup-file-editor_05.tgz) b8c177d72ebf39628fa33bc9826e9514861ebea3d44171efe70dcb83f8c7b295
To install your download
For instructions specific to your download, click the Details tab after closing this window.

Flag As Inappropriate

Lookup File Editor

Overview
Details
Ever want to edit a lookup within Splunk with a user-interface? Now you can. This app provides an Excel-like interface for editing, importing, and exporting lookup files (both KV store and CSV based lookups).

This app makes your lookups work on a Search Head Clustered environments too (edits to lookups will be propagated to other search heads).

A revision history is maintained for lookups so that you can view or restore older lookups easily in the interface.

Configuration

This app needs no configuration, just install it via the Splunk Manager:

  1. Log in to Splunk and go to Apps > Manage Apps.
  2. Click install app from file.
  3. Upload the app package file and click upload

More Information

This project is open source. See GitHub for the source or LukeMurphey.net for more information.

Release Notes

Version 2.7.1
Sept. 4, 2017

Fixing issue where lookups with spaces in the names were allowed

Version 2.7.0
June 1, 2017

1) Importing CSV files into KV store lookups is now supported
2) KV store lookup files will be opened in the "nobody" owner context by default now
3) Fixed error message when deleting KV store row entries on Splunk 6.6
4) Edit ACLs page now opens in a new page

Version 2.6.2
May 20, 2017

1) CSV lookups with invalid characters can now be loaded
2) Added the search views to the navigation

Version 2.6.1
May 6, 2017

1) Improving styling on Splunk 6.6
2) Fixing refresh button on the lookup editor page which didn't work in some cases

Version 2.6.0
March 26, 2017

1) Added ability to refresh the lookup
2) Added link to edit lookup permissions from the list page
3) Fixed misaligned dropdown on the lookup list page
4) Improved the list of users on the KV lookup editor to make it easier to use when lots of users exist
5) Updated the icon

Version 2.5.0
Nov. 10, 2016

1) KV store lookups can now be disabled and enabled
2) Fixed issue where a user-made lookup file that had it's permissions set to shared could not be opened
3) Improved the styling of the lookups list page
4) Fixed incompatibilty with the Mobile Access Add-on

Version 2.4.0
Oct. 15, 2016

1) Added link to open lookups in search
2) Fixed issue where a KV store lookup with missing fields might cause the rows to not line up with the header

Version 2.3.4
Oct. 12, 2016

Fixed issue where the app could cause Splunk to make world writable files

Version 2.3.3
Sept. 30, 2016

* Fixed issue where KV store lookups with boolean values didn't work on some versions of Splunk
* Added support for Splunk 6.5
* Fixed issue where you couldn't delete the first row on KV store lookups

Version 2.3.2
Sept. 13, 2016

* Added ability to edit blank CSV files
* Editor now works even if ES is installed
* JSON blobs within columns can now be edited

Version 2.3.1
July 13, 2016

Fixed some issues on the lookup creation page

Version 2.3
July 7, 2016

* Updated the table editor (various bug fixes)
* Adding validation of numeric cells in KV lookups
* Adding validation of time cells in KV lookups
* Time values are now properly converted to epoch-seconds (a number) when being saved
* Table is now re-rendered properly when switching user contexts
* User interface improvements to the editor
* Added export option to the editor

Version 2.2
June 20, 2016

* Added ability to load KV store collections entries from other users
* Fixed issue where the first row of KV store lookups could not be removed
* Updated icon

Version 2.1.2
April 26, 2016

Press CTRL + E on the lookup edit page for a blast from the past!

Version 2.1.1
Feb. 19, 2016

Fixed issue where some lookups would not appear in the list

Version 2.1.0
Feb. 10, 2016

New features:
* Added ability to make a user-specific lookup
* Added ability to filter for user-specific lookups on the lookups list

Bugs fixes:
* Updated the description of CSV lookups to note that CSV lookups do support SHC
* Fixed an issue where a value of "null" would appear in the editor sometimes
* Fixed an issue where the UI would not let you change the lookup name if new lookup creation failed * Added sourcetyping of the lookup editor controller logs
* App now detects if you are using an older version of Splunk that doesn't support KV store and hides KV options
* The editor no longer allows you to select a disabled app
* The lookups list now includes the ability to filter on apps that only include KV lookups

Version 2.0.3
Dec. 4, 2015

* Fixing compatibility issue with IE 11
* Adding text to make it clear that KV store lookups will be automatically saved
* Fixing issue where the renderer was not styling the cells correctly

Version 2.0.2
Nov. 29, 2015

Eliminating XSS issue on file import

Version 2.0.1
Nov. 26, 2015

Fix for XSS issue in HandsOnTable

Version 2.0.0
Nov. 19, 2015

Complete re-write, changes include:
* Support for KV store lookups
* Refreshed UI
* Dropped Splunk 5.0 support
* CSV lookups are now replicated (SHC support)

Version 1.4.1
Feb. 1, 2015

* Fixed issue where some lookup files could not be loaded in some cases
* Fixed minor Javascript error that occurred if the server indicated that the lookup file couldn't be saved
* Backup file times now represent the date that the file was modified (not the date it was backed up)

Version 1.4.0
Nov. 15, 2014

Added ability to import CSV files in the editor

Version 1.3.1
Nov. 10, 2014

Updating icon for Splunk 6.2

Version 1.3
Sept. 9, 2014

Added support for backups of lookup files and ability to load a previous version

Version 1.2
June 25, 2014

Added ability to select how many entries to show on each page

Version 1.1
May 23, 2014

* Added warning when users attempt to delete the header row
* Made the header row sticky such that it stays at the top of the page even when you scroll down

Version 1.0
May 10, 2014

* Fixed issue whee the button to create a new lookup file could not be clicked on Splunk 6.1
* Fixed issue that caused the lookup editor is fail on Splunk hosts using a custom root endpoint

Version 0.7
March 4, 2014

Fixed issue where the header and footer did not show on 6.0 due to a Javascript error

Version 0.6
March 1, 2014

Added compatibility with Splunk 5.0 and added limit for very large lookup files (prevents the browser from crashing when attempting to save lookup files over 10 MB)

Version 0.5
Feb. 21, 2014

Early beta version of the lookup editor. Doesn't yet work on Splunk 5.0.* (but should soon).

4,395
Installs
21,955
Downloads
Share Subscribe LOGIN TO DOWNLOAD

Subscribe Share

Splunk Certification Program

Splunk's App Certification program uses a specific set of criteria to evaluate the level of quality, usability and security your app offers to its users. In addition, we evaluate the documentation and support you offer to your app's users.

Are you a developer?

As a Splunkbase app developer, you will have access to all Splunk development resources and receive a 50GB license to build an app that will help solve use cases for customers all over the world. Splunkbase has 1000+ apps and add-ons from Splunk, our partners and our community. Find an app or add-on for most any data source and user need, or simply create your own with help from our developer portal.

Follow Us:
© 2005-2018 Splunk Inc. All rights reserved.
Splunk®, Splunk>®, Listen to Your Data®, The Engine for Machine Data®, Hunk®, Splunk Cloud™, Splunk Light™, SPL™ and Splunk MINT™ are trademarks and registered trademarks of Splunk Inc. in the United States and other countries. All other brand names, product names, or trademarks belong to their respective owners.