Deployment Architecture

My JSON file contains 2000 events (field values) but when I index it and search in splunk it is showing me only 1990 events?

dnyanesh7
Engager

I have JSON file which contains almost 2000 event values (field value format),
I indexed this file in Splunk
Applied search on it.
It is listing onlin 1990 events.
Initially, I thought it is avoiding duplicate events but it seems this is not case. It also show duplicate events but still showing 1990.
Please let me know what can be the problem?

Tags (1)
0 Karma
Get Updates on the Splunk Community!

Index This | Why did the turkey cross the road?

November 2025 Edition  Hayyy Splunk Education Enthusiasts and the Eternally Curious!   We’re back with this ...

Enter the Agentic Era with Splunk AI Assistant for SPL 1.4

  🚀 Your data just got a serious AI upgrade — are you ready? Say hello to the Agentic Era with the ...

Feel the Splunk Love: Real Stories from Real Customers

Hello Splunk Community,    What’s the best part of hearing how our customers use Splunk? Easy: the positive ...