Splunk Enterprise Security

Slpunk DB connect APP

malisushil
New Member

i am trying to query the Oracle DB using the statement attached in the case, the query works fine for the batch input, but when i try to put rising column and check point value it throws the error as attached in this case. please update on how to proceed in this case.alt text

0 Karma

Richfez
SplunkTrust
SplunkTrust

I'm not sure which side of this equation it's complaining about. A few things to check:

1) Please confirm your source timestamp column is of type TIMESTAMPTZ

2) Try using only one timestamp comparison.

3) Grab a value from the DB for timestamp (any one of them) and try using that particular construct.

A quick search for this shows it looks like your syntax is correct for the to_date, but ... maybe it needs something else.

0 Karma

malisushil
New Member

sorry to much oracle for me, can you tell me where to check for the source timestamp column

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Persistent Queue at TcpOut — One of Splunk's Most Practical Features

Splunk introduced persistent queueing at the tcpout layer as one of the most practical resilience features in ...

Skip the Awkward Silence: Have a .conf-ersation at .conf26

Picture this. You arrive at .conf26 already having your socializing and networking plans mapped out. No ...

Rethinking Zero Trust: From Product Purchases to Logical Control Evidence

Implementing Zero Trust (ZT) across complex environments often falters at the very beginning due to a ...