# Sharepoint connection to ELK

**URL:** <https://discuss.elastic.co/t/sharepoint-connection-to-elk/222040>\
**Category:** Elasticsearch\
**Created:** [March 4, 2020, 10:29am UTC](https://discuss.elastic.co/t/sharepoint-connection-to-elk/222040 "2020-03-04T10:29:32Z")\
**Posts on this page:** 4\
**Page:** 1

<div class="post-metadata">

**Author:** ![Be1](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/be1/32/63657_2.png) [@Be1](https://discuss.elastic.co/u/Be1)\
**Post date:** [March 4, 2020, 10:29am UTC](https://discuss.elastic.co/t/sharepoint-connection-to-elk/222040/1 "2020-03-04T10:29:32Z")

</div>

I have a sharepoint list .Those details needs to be pushed to elastic search. From there I would be performing visualizations in Kibana  
Is there any way this sharepoint list data can be added to elastic search  
If there is no such plugin, I can export the sharepoint list to a excel iqy file. Can this iqy file be loaded in Logstash  
The way I want this to work is as soon as the iqy file is refreshed , the new entries should be pushed to elastic search  
Please let me know if the above 2 cases are possible, if not what can be the other ways  
Thanks a lot in advance 🙂

---

<div class="post-metadata">

**Author:** ![Wolfram\_Haussig](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/wolfram_haussig/32/70528_2.png) [@Wolfram\_Haussig](https://discuss.elastic.co/u/Wolfram_Haussig)\
**Post date:** [March 4, 2020, 11:33am UTC](https://discuss.elastic.co/t/sharepoint-connection-to-elk/222040/2 "2020-03-04T11:33:18Z")

</div>

Hi,

You can try to use the Sharepoint JSON API which can be called from the LogStash http\_poller input.  
I once used the Sharepoint API to read sharepoint lists to migrate them to GitLab but I did not do it with LogStash. My guess would be:

- find out the correct URL to read the sharepoint list
- create a logstash pipeline which polls the list using http\_poller
- you might have to check if the entries are really new(don't know if API supports showing only new/updated entries)
- write them to ElasticSearch

As far as I know, iqy files do not contain the data - they contain the url and additional parameters required to read the data from the url so I do not think that will help you in this case.

Best regards  
Wolfram

---

<div class="post-metadata">

**Author:** ![Be1](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/be1/32/63657_2.png) [@Be1](https://discuss.elastic.co/u/Be1)\
**Post date:** [March 4, 2020, 12:35pm UTC](https://discuss.elastic.co/t/sharepoint-connection-to-elk/222040/3 "2020-03-04T12:35:12Z")

</div>

Thanks a lot for the reply.  
Will try the above method and let you know

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [April 1, 2020, 12:35pm UTC](https://discuss.elastic.co/t/sharepoint-connection-to-elk/222040/4 "2020-04-01T12:35:24Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
