<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: JSON syntax highlighting not working for strings with greater than 1000 characters? in Getting Data In</title>
    <link>https://community.splunk.com/t5/Getting-Data-In/JSON-syntax-highlighting-not-working-for-strings-with-greater/m-p/229707#M44700</link>
    <description>&lt;P&gt;For events I have that are 3000+ lines, I found that when you expand the event to show all lines, the JSON syntax highlighting option appears - at least on 6.2.3 through 6.3.1.&lt;/P&gt;</description>
    <pubDate>Wed, 18 Nov 2015 14:57:34 GMT</pubDate>
    <dc:creator>mkemmerer</dc:creator>
    <dc:date>2015-11-18T14:57:34Z</dc:date>
    <item>
      <title>JSON syntax highlighting not working for strings with greater than 1000 characters?</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/JSON-syntax-highlighting-not-working-for-strings-with-greater/m-p/229706#M44699</link>
      <description>&lt;P&gt;Hi, folks -- I'm using Splunk 6.0.1.&lt;/P&gt;

&lt;P&gt;I'm trying to ingest JSON and have the JSON syntax highlighting automatically parse my input.&lt;/P&gt;

&lt;P&gt;After experimenting, it seems that I can only get the syntax highlighting to work for JSON lines with less than 1000 characters (998 works).&lt;/P&gt;

&lt;P&gt;How can I fix this?&lt;/P&gt;

&lt;P&gt;I've tried setting TRUNCATE=0 in the app's props.conf file.  I've tried resetting the maxvaluesize=10000 within the limits.conf file.  Both, yield no luck.&lt;/P&gt;

&lt;P&gt;Thanks!&lt;/P&gt;</description>
      <pubDate>Wed, 18 Nov 2015 01:46:43 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/JSON-syntax-highlighting-not-working-for-strings-with-greater/m-p/229706#M44699</guid>
      <dc:creator>minerjaime</dc:creator>
      <dc:date>2015-11-18T01:46:43Z</dc:date>
    </item>
    <item>
      <title>Re: JSON syntax highlighting not working for strings with greater than 1000 characters?</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/JSON-syntax-highlighting-not-working-for-strings-with-greater/m-p/229707#M44700</link>
      <description>&lt;P&gt;For events I have that are 3000+ lines, I found that when you expand the event to show all lines, the JSON syntax highlighting option appears - at least on 6.2.3 through 6.3.1.&lt;/P&gt;</description>
      <pubDate>Wed, 18 Nov 2015 14:57:34 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/JSON-syntax-highlighting-not-working-for-strings-with-greater/m-p/229707#M44700</guid>
      <dc:creator>mkemmerer</dc:creator>
      <dc:date>2015-11-18T14:57:34Z</dc:date>
    </item>
    <item>
      <title>Re: JSON syntax highlighting not working for strings with greater than 1000 characters?</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/JSON-syntax-highlighting-not-working-for-strings-with-greater/m-p/229708#M44701</link>
      <description>&lt;P&gt;Thanks, mkemmerer.&lt;/P&gt;

&lt;P&gt;My JSON lines are in the realm of 1500 characters in length.  When viewing the search results, I can see the entire raw data values, with no option for the syntax highlighting.&lt;/P&gt;

&lt;P&gt;I've confirmed, with jsonlint.com, that the JSON is valid.&lt;/P&gt;</description>
      <pubDate>Wed, 18 Nov 2015 16:36:35 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/JSON-syntax-highlighting-not-working-for-strings-with-greater/m-p/229708#M44701</guid>
      <dc:creator>minerjaime</dc:creator>
      <dc:date>2015-11-18T16:36:35Z</dc:date>
    </item>
  </channel>
</rss>

