What would be the best way to ingest this KPI data?
Should I forward it to the index I have (for all other type of logs) and define the "sourcetype=csv" in order that Splunk recognizes the fields?
Or, should I better create a separate metrics index for that? If yes, what would be the source type then? The metrics_csv?
Would the format above be properly recognized by metrics_csv and the fields correctly extracted?