Quantcast
Channel: Questions in topic: "splunk-enterprise"
Viewing all articles
Browse latest Browse all 47296

How can i extract a field from my custom search command through a conf file ?

$
0
0
Hello splunkers, I've got PEM encoded value from SSL certificates that are already indexed. I've made a python custom search command to display a decoded part of my value : the "not before" date of my x509 certificate. The extraction works through the search command, but i couldn't manage to make it work through a conf file. Could anyone help me through this. Thank you.

Viewing all articles
Browse latest Browse all 47296

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>