Getting Data In
Highlighted

Splunking Postgres log events WITHOUT a timestamp

Splunk Employee
Splunk Employee

Currently, my postgres log events do not contain a timestamp, which makes it difficult for splunking, especially historical events located in .zip files.

Does anyone know how to enable the logging of the current timestamp within each postgres event so I can splunk it properly?

0 Karma
Highlighted

Re: Splunking Postgres log events WITHOUT a timestamp

New Member

Look for the entry:

loglineprefix

in your postgresql.conf file.

Documentation is with the entry.

0 Karma