Hi all,
I have an issue with a Splunk DB Connect input. I'm getting events from all inputs, but not from one input, so I created a new input (disabled old one), but it runs for only some time and not able to get events.
Checkpoint value = 2023-10-04 09:53:43.0 for a rising column(EVENT_TIME)
Is checkpoint value is the problem?
Yes I believe the checkpoint value is the issue b/c it's only going to look for events after that time. Assuming you have no events after the year 2023 already in your DB, then yes, that is the problem.
Yes I believe the checkpoint value is the issue b/c it's only going to look for events after that time. Assuming you have no events after the year 2023 already in your DB, then yes, that is the problem.
Thanks for response. Is this because of the query , Can you let me know how can i solve this one?
Anything in the logs (dbx.log, dbx2.log, splunkd.log)?