We are using Splunk DB Connect 3.4.0 and have setup a Database input with a timestamp column as Rising column. I can see that Splunk uses milliseconds precision in the rising column field for timestamps, but our DBA is complaining that querying the DB with millisecond precision is causing issues at their end. The database is an Oracle one.
I have tried changing the Rising column to DateTime field but again that having millisecond precision, although in the database I can verify it having till seconds.
Is there anyway I can change the rising column precision to seconds and would that be the right thing to do for rising timestamps/DateTime fields?
Is there any solution for this? Can someone please help with the query