Splunk Enterprise Security

Slpunk DB connect APP

malisushil
New Member

i am trying to query the Oracle DB using the statement attached in the case, the query works fine for the batch input, but when i try to put rising column and check point value it throws the error as attached in this case. please update on how to proceed in this case.alt text

0 Karma

Richfez
SplunkTrust
SplunkTrust

I'm not sure which side of this equation it's complaining about. A few things to check:

1) Please confirm your source timestamp column is of type TIMESTAMPTZ

2) Try using only one timestamp comparison.

3) Grab a value from the DB for timestamp (any one of them) and try using that particular construct.

A quick search for this shows it looks like your syntax is correct for the to_date, but ... maybe it needs something else.

0 Karma

malisushil
New Member

sorry to much oracle for me, can you tell me where to check for the source timestamp column

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Observability Simplified: Combining User Experience, Application Performance & ...

Tech Talk Observability Simplified: Combining User Experience, Application Performance & Network ...

Event Series May & June: From Network Visibility to Service Intelligence

Unifying the Network: Moving from Alert Noise to Service Intelligence with Splunk ITSI In today’s hybrid ...

Global Splunk User Group Events: May + June 2026

Your Splunk Community Awaits: Discover Upcoming User Group Events Worldwide    Staying ahead in the fast-paced ...