This SA provides a custom search command which updates lookup file from the staging directory `$SPLUNK_HOME/var/run/splunk/lookup_tmp`.
Built by
Last Updated
July 13, 2023
Compatibility
This is compatibility for the latest version
Not Available
Rating
0
(0)
Log in to rate this app
Support
Not Supported
This SA provides a custom search command which updates lookup file from the staging directory `$SPLUNK_HOME/var/run/splunk/lookup_tmp`.
This is useful if you update your lookup files using cron, scp, rsync, place any file transfer tool name here in a SHC to tell Splunk to re-sync the file to all peers.