Skip to content

dstaulcu/SplunkKOHelper

Repository files navigation

SplunkKOHelper

Powershell script to orchestrate identification and correction of reports and dashboards requring updates to support Splunk app for Windows v5 deployment.

Synopsis:

Employs Splunk REST API to find searches and views having legacy wineventlog sourcetype references. User can select one or more knowledge objects to review.

alt tag

Transformations are drafted automatically and differences are displayed in windiff application. Note: If the auto-transformation was not perfect, you can edit the right side file through windiff to fine tune changes.

alt tag

If changes are accepted, new source is placed in clipbard.

alt tag

The view or dashboard is then automatically opened for editing in a new browser window where changes can be pasted from clipboard and saved.

alt tag

Both searches and views are supported.

alt tag

alt tag

alt tag

About

Job aide to help transition splunk reports and dashboards to support splunk app for windows v5

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published