Skip to content
Job aide to help transition splunk reports and dashboards to support splunk app for windows v5
Branch: master
Clone or download
Permalink
Type Name Latest commit message Commit time
Failed to load latest commit information.
screencaps Add files via upload Feb 14, 2019
README.md Update README.md Feb 14, 2019
SplunkKOHelper.ps1 default script to use https for all connections Feb 16, 2019

README.md

SplunkKOHelper

Powershell script to orchestrate identification and correction of reports and dashboards requring updates to support Splunk app for Windows v5 deployment.

Synopsis:

Employs Splunk REST API to find searches and views having legacy wineventlog sourcetype references. User can select one or more knowledge objects to review.

alt tag

Transformations are drafted automatically and differences are displayed in windiff application. Note: If the auto-transformation was not perfect, you can edit the right side file through windiff to fine tune changes.

alt tag

If changes are accepted, new source is placed in clipbard.

alt tag

The view or dashboard is then automatically opened for editing in a new browser window where changes can be pasted from clipboard and saved.

alt tag

Both searches and views are supported.

alt tag

alt tag

alt tag

You can’t perform that action at this time.