All Apps and Add-ons

How to properly configure db input on DB Connect Version 3 to pull huge amount of data?

sshres5
Communicator

We upgraded the db connect to the new version 3 but now we are facing the issue of not being able to get data. Moreover the ORDER BY seems to be causing the issue.
We are trying to pull 1000-100000s of row per minute and not getting any success. The query works in the first place, as we are able to preview the data on Choose and Preview Table. As well as able to get data in Splunk itself before it breaks down on next attempt 😞

0 Karma

dvergnes_splunk
Splunk Employee
Splunk Employee

Did you have relevant logs to share? You can search index=_internal sourcetype=dbx_server and probably add a condition with your input name to limit to only see the relevant events.

0 Karma

adonio
Ultra Champion
0 Karma

sshres5
Communicator

Yeah my query already has it.

0 Karma
Career Survey
First 500 qualified respondents will receive a $20 gift card! Tell us about your professional Splunk journey.

Can’t make it to .conf25? Join us online!

Get Updates on the Splunk Community!

Community Content Calendar, September edition

Welcome to another insightful post from our Community Content Calendar! We're thrilled to continue bringing ...

Splunkbase Unveils New App Listing Management Public Preview

Splunkbase Unveils New App Listing Management Public PreviewWe're thrilled to announce the public preview of ...

Leveraging Automated Threat Analysis Across the Splunk Ecosystem

Are you leveraging automation to its fullest potential in your threat detection strategy?Our upcoming Security ...