When I'm querying the data using DBQuery in DBConnect the data is being shown as below
776569 1406755920.000 abc xyz
While the actual data is as below
776569 2014-07-30 17:32:00 abc xyz
The date is being converted to epoch value automatically and also the epoch time is wrong..
This is causing problem to my DBinputs
You can use a SQL function to convert the date to character format that Splunk will recognize. In Oracle this would be something like this:
select to_char(date_field,'YYYY-MM-DD HH24:MI:SS'), other_columns from your_table;
Thanks man! It worked for me as well. Do you know why does it happen that the dates get these kind of values? What value is that?
I am skeptical about that as splunk can capture current time when you are indexing data. Not sure how to get rid of this issue.