I have JSON file which contains almost 2000 event values (field value format),
I indexed this file in Splunk
Applied search on it.
It is listing onlin 1990 events.
Initially, I thought it is avoiding duplicate events but it seems this is not case. It also show duplicate events but still showing 1990.
Please let me know what can be the problem?