<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic DB Connect rising column checkpoint issue in All Apps and Add-ons</title>
    <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/DB-Connect-rising-column-checkpoint-issue/m-p/578136#M75734</link>
    <description>&lt;P&gt;Hello fellow Splunkers,&lt;/P&gt;&lt;P&gt;I'm trying to connect new DB input, but I'm facing a small problem.&lt;/P&gt;&lt;P&gt;I've configured a rising column (time) and run my query from the "create new input" screen to make sure that I get no SQL errors (which I don't) and that I'm getting the data I wanted (which I do) but for some reason Splunk won't let me continue with the creation of the input.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;The final part of my query looks like this&lt;/SPAN&gt;:&lt;/P&gt;&lt;P&gt;"&lt;SPAN&gt;WHERE time&amp;gt;? AND field1='1&lt;/SPAN&gt;'&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;ORDER BY time ASC&lt;/SPAN&gt;"&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;When trying to create this input, Splunk shows an error saying that my query doesn't&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;accept checkpoint&lt;/SPAN&gt;.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;My guess is that the "AND" messes-up the expected syntax&lt;/SPAN&gt;.&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Does anyone have an idea how to work around the problem?&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Thanks&lt;/SPAN&gt;&lt;/P&gt;</description>
    <pubDate>Sun, 12 Dec 2021 18:11:31 GMT</pubDate>
    <dc:creator>IZ88</dc:creator>
    <dc:date>2021-12-12T18:11:31Z</dc:date>
    <item>
      <title>DB Connect rising column checkpoint issue</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/DB-Connect-rising-column-checkpoint-issue/m-p/578136#M75734</link>
      <description>&lt;P&gt;Hello fellow Splunkers,&lt;/P&gt;&lt;P&gt;I'm trying to connect new DB input, but I'm facing a small problem.&lt;/P&gt;&lt;P&gt;I've configured a rising column (time) and run my query from the "create new input" screen to make sure that I get no SQL errors (which I don't) and that I'm getting the data I wanted (which I do) but for some reason Splunk won't let me continue with the creation of the input.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;The final part of my query looks like this&lt;/SPAN&gt;:&lt;/P&gt;&lt;P&gt;"&lt;SPAN&gt;WHERE time&amp;gt;? AND field1='1&lt;/SPAN&gt;'&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;ORDER BY time ASC&lt;/SPAN&gt;"&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;When trying to create this input, Splunk shows an error saying that my query doesn't&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;accept checkpoint&lt;/SPAN&gt;.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;My guess is that the "AND" messes-up the expected syntax&lt;/SPAN&gt;.&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Does anyone have an idea how to work around the problem?&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Thanks&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Sun, 12 Dec 2021 18:11:31 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/DB-Connect-rising-column-checkpoint-issue/m-p/578136#M75734</guid>
      <dc:creator>IZ88</dc:creator>
      <dc:date>2021-12-12T18:11:31Z</dc:date>
    </item>
  </channel>
</rss>

