Getting Data In

Create fields for a csv log

Dayalss
Engager

Hi,

 

I have ingested an csv file by creating an input on a windows server.

But the challenge is the logs are not getting extracted as fields  I want the data to be extracted in fields.

Can someone please help me in extracting all the fields from the log.

 

Thank you

Labels (1)
0 Karma

Dayalss
Engager

Hi,

I have configured the below input

 

[monitor://C:\path\file.csv]
disabled = false
sourcetype = test
index = somename

 

Data is getting ingested , but not extracting as fields.

 

Can you please help

0 Karma

ITWhisperer
SplunkTrust
SplunkTrust

Have you defined a source type (props.conf) as well?

0 Karma

ITWhisperer
SplunkTrust
SplunkTrust

How have you defined the ingestion? Please share the configuration files (anonymised of course)

0 Karma
Get Updates on the Splunk Community!

The All New Performance Insights for Splunk

Splunk gives you amazing tools to analyze system data and make business-critical decisions, react to issues, ...

Good Sourcetype Naming

When it comes to getting data in, one of the earliest decisions made is what to use as a sourcetype. Often, ...

See your relevant APM services, dashboards, and alerts in one place with the updated ...

As a Splunk Observability user, you have a lot of data you have to manage, prioritize, and troubleshoot on a ...