All Apps and Add-ons

Splunk DB Connect: How to pull data from two Oracle database connections at once?

bobbyfair
New Member

I'm using Splunk DB Connect app and I downloaded the Oracle TA , installed and using Unix from the back end and gave two connections for the Splunk DB Connect app. I did the complete process from the back end even like creating inputs.conf and database.conf. I mentioned the connection names and everything clearly. I can pull the data from one connection, but the problem is that I want to see both of the data at once which I can't. Can someone help me out with that please?

Thanks

0 Karma

nravichandran
Communicator

Not clear on your question. "I want to see both of the data at once which I can't" - Do you want to join/query tables across oracle instances? If yes, please test if you have linked server and if you are able to query the link server from the oracle instance. In order to be simple, you can create create a materialized view and then from the dbconnect query that materialized view. Hope this helps.

0 Karma

jcoates_splunk
Splunk Employee
Splunk Employee

not sure what is going on here, so here are some guesses:

  1. one of the inputs isn't working -- look at the DB Connect health dashboard to validate that they're both running
  2. one of the inputs is writing into an index that you're not searching by default -- check roles, indexes searched by default, or specify (index=foo OR index=bar) in your search
  3. one of the inputs is reading data that splunk can't index, like BLOBs or something -- look for errors in splunkd logs
0 Karma

somesoni2
Revered Legend

What is your report requirement? Would commands like append work for your requirements (appending query result for both connection in one search)

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Data Management Digest – August 2026

MichelleCorpora_1-1788182384472.png Welcome to the August 2026 edition of Data Management Digest! August was a ...

Your Feedback. Our Roadmap. Visit the PX Feedback Booth at .conf26

You use Splunk every day, come and help shape what's next.  Save Your Seat: Product-Focused Sessions at ...

Agentic SOC Triage: Investigating Splunk ES Notables with MCP Server and a Local LLM

The Problem: Too Many Alerts, Too Little Context Security operations teams running Splunk Enterprise Security ...