Hi All,
I am unable to index .gz files which has csv file. Can you guys please help
04-16-2019 03:11:28.982 -0400 INFO ArchiveProcessor - reading path=/guard_datamart/DMv2_EXP_BUFF_USAGE_20190415060000.gz (seek=0 len=4210)
04-16-2019 03:11:29.027 -0400 WARN FileClassifierManager - The file '/guard_datamart/DMv2EXP_BUFF_USAGE_20190415060000' is invalid. Reason: binary
04-16-2019 03:11:29.040 -0400 WARN FileClassifierManager - The file '/guard_datamart/DMv2EXP_BUFF_USAGE_20190415060000' is invalid. Reason: binary
04-16-2019 03:11:29.040 -0400 INFO ArchiveProcessor - Finished processing file '/guard_datamart/DMv2_EXP_BUFF_USAGE_20190415060000.gz', removing from stats
Based on the output you provided, the files within your .gz do not appear to have a file extension. Splunk therefore interprets those as binary files and will not attempt to ingest them.
Did this resolve your issue?
please help on the above query