Hello.
I am using the following Jamf Pro Add-on for Splunk (Version 2.10.4) to import Jamf data.
https://splunkbase.splunk.com/app/4729/
Here, the following error records may be included.
<Error><error>The XML was too long</error></Error>
Is there any way to resolve this error?
The following is a detailed description.
There is also information that Splunk does not capture data longer than 10,000 characters by default, but Splunk does not make that setting.
I strongly recommend moving to the new CustomAPI options instead of the older reports. The new layout is json based and provides more details and customizability.
Available in 2.10.5 so just upgrade and try it out.