Getting Data In

Splunk not showing the records of Salesforce Custom Object

sanjax90
New Member

I added a custom object as one of the inputs but I am not able to see the records in Splunk. It is not visible in the sources also. The login and authentication to the salesforce org is successful as I am able to see logs/login history.

input.conf:
[sfdc_object://Expense_c]
account = san_eng24
interval = 40
limit = 1000
object = Expense
c
object_fields = Amount
c ,CreatedById,LastModifiedById,Reimbursedc ,Name,Date_c
order_by = Name

Note in the above input.conf, all objects and custom field are appended by underscore underscore 'c' . This post here is not accepting special characters so showing it in wrong way.

Can anyone help on this?

0 Karma
Get Updates on the Splunk Community!

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...

Splunk MCP & Agentic AI: Machine Data Without Limits

Discover how the Splunk Model Context Protocol (MCP) Server can revolutionize the way your organization uses ...