Hi ,
Splunk adding additional double quotes when I export the data as csv . When I use the exported file as eventgen sample file, it causing parsing issues used when insert events using the sample file.
Any suggestions to this issue
Here is part of the 1st event in the exported file:
testindex,"/opt/splunk/var/log/cdm/events/events.log","testindex:testsourcetype","1665554739.952,root_host=""test.server.domain.com"",comp_id=""1234444"",check_checklist_name=""test name"",check_disa_cki_id="""",......
Could you please provide some examples of data in Splunk that you're exporting that is having issues?
Here is part of the 1st event in the exported file:
testindex,"/opt/splunk/var/log/cdm/events/events.log","testindex:testsourcetype","1665554739.952,root_host=""test.server.domain.com"",comp_id=""1234444"",check_checklist_name=""test name"",check_disa_cki_id="""",......