Getting Data In

unique sourcetype appends a -2

lbrhyne
Path Finder

Hello, We are using inputs.conf and props.conf to ingest a flat csv file. The issue we are having is the sourcetype name is appending a -2 to the sourcetype even though it is a unique name. Example: sourcetype=sourcetypename | results sourcetypename-2

#inputs.conf
[monitor://C:\Import\sample.csv]
index= test 
sourcetype= sourcetypename
#props.conf 
[sourcetypename] 
FIELD_DELIMITER=, 
CHECK_FOR_HEADER = true 
HEADER_MODE = firstline

 Any help would be appreciated!

Labels (1)
0 Karma
Get Updates on the Splunk Community!

Monitoring MariaDB and MySQL

In a previous post, we explored monitoring PostgreSQL and general best practices around which metrics to ...

Financial Services Industry Use Cases, ITSI Best Practices, and More New Articles ...

Splunk Lantern is a Splunk customer success center that provides advice from Splunk experts on valuable data ...

Splunk Federated Analytics for Amazon Security Lake

Thursday, November 21, 2024  |  11AM PT / 2PM ET Register Now Join our session to see the technical ...