Getting Data In

Splunk not showing the records of Salesforce Custom Object

sanjax90
New Member

I added a custom object as one of the inputs but I am not able to see the records in Splunk. It is not visible in the sources also. The login and authentication to the salesforce org is successful as I am able to see logs/login history.

input.conf:
[sfdc_object://Expense_c]
account = san_eng24
interval = 40
limit = 1000
object = Expense
c
object_fields = Amount
c ,CreatedById,LastModifiedById,Reimbursedc ,Name,Date_c
order_by = Name

Note in the above input.conf, all objects and custom field are appended by underscore underscore 'c' . This post here is not accepting special characters so showing it in wrong way.

Can anyone help on this?

0 Karma
Get Updates on the Splunk Community!

Index This | Why did the turkey cross the road?

November 2025 Edition  Hayyy Splunk Education Enthusiasts and the Eternally Curious!   We’re back with this ...

Enter the Agentic Era with Splunk AI Assistant for SPL 1.4

  🚀 Your data just got a serious AI upgrade — are you ready? Say hello to the Agentic Era with the ...

Feel the Splunk Love: Real Stories from Real Customers

Hello Splunk Community,    What’s the best part of hearing how our customers use Splunk? Easy: the positive ...