I added a custom object as one of the inputs but I am not able to see the records in Splunk. It is not visible in the sources also. The login and authentication to the salesforce org is successful as I am able to see logs/login history.
input.conf:
[sfdc_object://Expense_c]
account = san_eng24
interval = 40
limit = 1000
object = Expensec
object_fields = Amountc ,CreatedById,LastModifiedById,Reimbursedc ,Name,Date_c
order_by = Name
Note in the above input.conf, all objects and custom field are appended by underscore underscore 'c' . This post here is not accepting special characters so showing it in wrong way.
Can anyone help on this?