Getting Data In

DB Connect - Query timed out Issue

spl_unker
Explorer

Im setting up a new DB connect. While creating inputs i could execute the SQL query and get results in Batch Mode. Where as when i execute the same query in Rising Column mode (which adds Order by clause to the query) takes more time and i get query time out message.

I suspect this is because  the initial query pulls entire records which is around 13 Million records

Please suggest if there is any alternate method?

Query im using :

Select * from table_name where column_name1  LIKE %abc% AND column_name2 > ? ORDER BY column_name2 ASC

TIA

0 Karma

isoutamo
SplunkTrust
SplunkTrust

Hi

have the column_name2 index in dB? If not then I propose that it will be added. Otherwise the only option is increase timeout parameter for this input query.

r. Ismo

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

At .conf26, Don’t Just See What’s Next. Help Shape It at Innovation Labs.

Long before a new capability reaches the keynote stage, it begins as an idea waiting to be tested. At ...

Forwarder Topology Guidance: Intermediate HF vs Intermediate UF

Why Universal Forwarders Should Not Be Used as Intermediate Forwarders A practical Splunk forwarding topology ...

Data Management Digest – August 2026

Data Management Digest   Welcome to the August 2026 edition of Data Management Digest! August was a big month ...