Getting Data In

Splunking Postgres log events WITHOUT a timestamp

maverick
Splunk Employee
Splunk Employee

Currently, my postgres log events do not contain a timestamp, which makes it difficult for splunking, especially historical events located in .zip files.

Does anyone know how to enable the logging of the current timestamp within each postgres event so I can splunk it properly?

0 Karma

cnemelka
New Member

Look for the entry:

log_line_prefix

in your postgresql.conf file.

Documentation is with the entry.

0 Karma