All Apps and Add-ons

Can you help analyze a file in the Splunk Hadoop Connect App?

satishmanchala
New Member

hi

I have installed Splunk Enterprise in an AWS instance.

i have installed the Splunk Hadoop Connect app also and it's working well.

i have exported the raw file from Splunk to Hadoop.

But in Hadoop, it's showing a .cursor file. Please tell me how to analyze that cursor file in Hadoop.

Please also let me know the usage of hunk and its download path with step by step set up.

Thank u.

0 Karma

rdagan_splunk
Splunk Employee
Splunk Employee

Yes, the cursor file is expected, but you should also be able to see the .gz file after the job is done.
Here is the link to the docs that explain the cursor and hdfs files:
http://docs.splunk.com/Documentation/HadoopConnect/1.2.5/DeployHadoopConnect/ExporttoHDFS

0 Karma
Get Updates on the Splunk Community!

Streamline Data Ingestion With Deployment Server Essentials

REGISTER NOW!Every day the list of sources Admins are responsible for gets bigger and bigger, often making the ...

Remediate Threats Faster and Simplify Investigations With Splunk Enterprise Security ...

REGISTER NOW!Join us for a Tech Talk around our latest release of Splunk Enterprise Security 7.2! We’ll walk ...

Introduction to Splunk AI

WATCH NOWHow are you using AI in Splunk? Whether you see AI as a threat or opportunity, AI is here to stay. ...