Changes to the CLI
This documentation does not apply to the most recent version of Splunk. Click here for the latest version.
Changes to the CLI
Splunk's command line interface, CLI, was completely rewritten for 4.0. The following is a list of new functionality and command options that have been removed or are no longer supported.
New functionality
The following are new commands and options that have been added to 4.0. For more information, access the help page for these commands:
$SPLUNK_HOME/bin/splunk help <command>
- add oneshot
- add/edit saved-search [summary_index|start_time|edit_time|ttl|fields]
- add/edit/list/remove exec (this object replaces scripted)
- display/remove/show jobs
- enable/disable index
- reload auth
Command options that no longer work
The following is a list of commands and options that have been removed in 4.0 and are no longer supported.
- activate
- add [blacklist|fifo|forward-group|server-class|s2s-blacklist]
- add/edit saved-search [rss|shared]
- add/edit scripted (this object has been replaced with exec)
- disable [module]
- display [module|webserver|web-ssl]
- edit [blacklist|deploy-client|fifo|forward-group|forward-server|s2s]
- getconf [dist-search]
- list [auth-roles|blacklist|deploy-info|discovered|fifo|forward-group]
- live-tail
- remove [blacklist|fifo|forward-group|index|server-class]
- show [user-pref|web-sslport]
This documentation applies to the following versions of Splunk: 4.0 , 4.0.1 , 4.0.2 , 4.0.3 , 4.0.4 , 4.0.5 , 4.0.6 , 4.0.7 , 4.0.8 , 4.0.9 , 4.0.10 , 4.0.11 View the Article History for its revisions.