below path which is consuming more space.does it impact cleaning old csv files.kindly suggest.
/opt/splunk/var/run/splunk/csv
du -hs * | sort -rh | head -5
752M McKinsey_ver2_20180727.csv
751M McKinsey_ver2_20180913.csv
748M McKinsey_ver2_20180905.csv
747M McKinsey_ver2_20180811.csv
744M McKinsey_ver2_20180918.csv
Hi,
It looks like these files will be generated with outputcsv
command. Are you using outputcsv
command in any search query? If yes then can't you migrate your query from outputcsv
to outputlookup
command ?