All Apps and Add-ons

Splunk DB Connect not indexing All data

venkateshparank
Path Finder

Hi -
I am running a query to index my data into Splunk using a rising column. However, whenever any columns has blank value, that particular event is not indexing into Splunk.
Example: I have below data and using rising column as ORDER_DATE

NAME LOCATION MOBILE VENDOR ORDER_DATE
Mary Texas 1234 AMAZON Feb202020
Khan Miami 4567 DD Mar042020

Kevin NewYork FEDEX Feb142020
Peter 6789 AMAZON Mar122020

Here DBConnect not indexing the data of Kevin and Peter and not able to see any data in Splunk.
Kevin - Mobile number is blank value
and Peter - Location is blank value

Please help why it is skipping to index this data

0 Karma

woodcock
Esteemed Legend

The missing field value probably confused Splunk as to where the timestamp is. Look for errors regarding timestamping.

0 Karma
Get Updates on the Splunk Community!

The All New Performance Insights for Splunk

Splunk gives you amazing tools to analyze system data and make business-critical decisions, react to issues, ...

Good Sourcetype Naming

When it comes to getting data in, one of the earliest decisions made is what to use as a sourcetype. Often, ...

See your relevant APM services, dashboards, and alerts in one place with the updated ...

As a Splunk Observability user, you have a lot of data you have to manage, prioritize, and troubleshoot on a ...