i forward my oracle database logs to SPLUNK enterprise and created alerts in SPLUNK. For instance, i created a DB review hit such that splunk will alert me if someone drop tables in the database. However, recently i noted that except for the time stamp, i see dotted lines across all the other columns. why is it so ?
Hi @staffago,
could you share more infos, e.g. the extraction query and the alert search?
Ciao.
Giuseppe