Hi there,
is there any kind of limitation in the TA-elasticsearch-data-integrator app?
We currently face the problem that the we ingest just a small amount of data from the elastic cluster itself.
For me it looks a kind of a limitation (snapshot attached). We got 3 Heavys in place running on Splunk 9.0.5.
Thanks and best regards.
Brenny
push - any ideas?