All Apps and Add-ons

How to properly configure db input on DB Connect Version 3 to pull huge amount of data?

sshres5
Communicator

We upgraded the db connect to the new version 3 but now we are facing the issue of not being able to get data. Moreover the ORDER BY seems to be causing the issue.
We are trying to pull 1000-100000s of row per minute and not getting any success. The query works in the first place, as we are able to preview the data on Choose and Preview Table. As well as able to get data in Splunk itself before it breaks down on next attempt 😞

0 Karma

dvergnes_splunk
Splunk Employee
Splunk Employee

Did you have relevant logs to share? You can search index=_internal sourcetype=dbx_server and probably add a condition with your input name to limit to only see the relevant events.

0 Karma

adonio
Ultra Champion
0 Karma

sshres5
Communicator

Yeah my query already has it.

0 Karma
Get Updates on the Splunk Community!

Tech Talk Recap | Mastering Threat Hunting

Mastering Threat HuntingDive into the world of threat hunting, exploring the key differences between ...

Observability for AI Applications: Troubleshooting Latency

If you’re working with proprietary company data, you’re probably going to have a locally hosted LLM or many ...

Splunk AI Assistant for SPL vs. ChatGPT: Which One is Better?

In the age of AI, every tool promises to make our lives easier. From summarizing content to writing code, ...