<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic CSV 101 rows only in Getting Data In</title>
    <link>https://community.splunk.com/t5/Getting-Data-In/CSV-101-rows-only/m-p/93715#M97396</link>
    <description>&lt;P&gt;Everytime a email alert is sent, it contains a CSV file (as attachment) that only contains 101 rows even though the actual total number of events is more than 101.&lt;/P&gt;

&lt;P&gt;Any advise on how to ensure that the CSV file contains all the events even if the number of events exceeds 101?&lt;/P&gt;</description>
    <pubDate>Tue, 03 May 2011 09:15:53 GMT</pubDate>
    <dc:creator>deyeo</dc:creator>
    <dc:date>2011-05-03T09:15:53Z</dc:date>
    <item>
      <title>CSV 101 rows only</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/CSV-101-rows-only/m-p/93715#M97396</link>
      <description>&lt;P&gt;Everytime a email alert is sent, it contains a CSV file (as attachment) that only contains 101 rows even though the actual total number of events is more than 101.&lt;/P&gt;

&lt;P&gt;Any advise on how to ensure that the CSV file contains all the events even if the number of events exceeds 101?&lt;/P&gt;</description>
      <pubDate>Tue, 03 May 2011 09:15:53 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/CSV-101-rows-only/m-p/93715#M97396</guid>
      <dc:creator>deyeo</dc:creator>
      <dc:date>2011-05-03T09:15:53Z</dc:date>
    </item>
    <item>
      <title>Re: CSV 101 rows only</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/CSV-101-rows-only/m-p/93716#M97397</link>
      <description>&lt;P&gt;The default value of maxresults is 100 but already increased to 10000 from 4.2.&lt;/P&gt;

&lt;P&gt;Please change the value in alert_actions.conf:&lt;/P&gt;

&lt;P&gt;[default]&lt;/P&gt;

&lt;P&gt;maxresults=10000&lt;/P&gt;</description>
      <pubDate>Thu, 18 Apr 2013 06:45:09 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/CSV-101-rows-only/m-p/93716#M97397</guid>
      <dc:creator>mchang_splunk</dc:creator>
      <dc:date>2013-04-18T06:45:09Z</dc:date>
    </item>
  </channel>
</rss>

