Getting Data In

Ingestion of CSV files via monitoring stanza

Naga
Engager

Good day. I have a CSV File like this. I wanted to do this ingestion via monitoring in inputs. And we should not use INDEXED_EXTRACTIONS=CSV as well. My ingestion is working fine as like normal monitoring

Question : How to add the fields which is present in header. I had like this in my props which was not working

props

FIELD_DELIMITER = ,
FIELD_NAMES="name","age","class"

 

Do I need to any other like FIELD _QUOTE for include the double quotes or any other header attribute to include? Kindly help

 

"name","age","class"

"alice","26","grade3"

"bob","24","grade2"

Labels (1)
Tags (1)
0 Karma
Get Updates on the Splunk Community!

Splunk Observability for AI

Don’t miss out on an exciting Tech Talk on Splunk Observability for AI!Discover how Splunk’s agentic AI ...

Splunk Enterprise Security 8.x: The Essential Upgrade for Threat Detection, ...

Watch On Demand the Tech Talk on November 6 at 11AM PT, and empower your SOC to reach new heights! Duration: ...

Splunk Observability as Code: From Zero to Dashboard

For the details on what Self-Service Observability and Observability as Code is, we have some awesome content ...