Getting Data In

Need to change the table with timestamp to unix epoch time for RISING column in DB Connect

jugalkinariwala
Explorer

I need to ingest the data from DB to Splunk via DBCONNECT.

Need to choose a column for a RISING column which has a data and time field in it with below format :

starttime=2020-06-16 01:26:35.595026665

How shall I convert the above time format at the query level so that it is used for checkpoint as a primary key to use it as a RISING Column .

0 Karma

jugalkinariwala
Explorer

If the table generates 1000 rows every 10mins

 

And if I am using Batch mode 

 

So shall I opt for DESC or ASC to retrieve the last rows that are generated from the table ?

0 Karma
Get Updates on the Splunk Community!

The All New Performance Insights for Splunk

Splunk gives you amazing tools to analyze system data and make business-critical decisions, react to issues, ...

Good Sourcetype Naming

When it comes to getting data in, one of the earliest decisions made is what to use as a sourcetype. Often, ...

See your relevant APM services, dashboards, and alerts in one place with the updated ...

As a Splunk Observability user, you have a lot of data you have to manage, prioritize, and troubleshoot on a ...