- Mark as New
- Bookmark Message
- Subscribe to Message
- Mute Message
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Splunk Cloud w/ sourcetype = log2metrics_json duplicating results
objectObject
New Member
04-18-2021
06:23 AM
When I use Splunk to search for events logged by my application I am getting duplicated results with `stats` `table` commands. Other posts have advised to edit the configuration file. . I am on Splunk Cloud not using an Universal Forwarder. After editing the source type configuration (The only configuration I could find within my admin panel & image included below). I still am getting duplicated results. I am new to managing my own Splunk instance but willing to learn!
I chose `log2metrics_json` because I interpreted that I would be able to use it to use that to auto-convert values to their types (numbers, booleans, etc).
Thank you,
- Mark as New
- Bookmark Message
- Subscribe to Message
- Mute Message
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content

jeremyhagand61
Communicator
07-12-2021
10:43 PM
Did you resolve this? I have the exact same problem.
