Splunk Enterprise

Adding entires in a KV Store through the lookup editor

robertgiffin
Explorer

I have been building KV Store lookups with the lookup editor and I have noticed that when I add a line in the UI, when I leave it and come back to it, it duplicates the line multiple times and I have to go back and delete the duplicates.  This seems to happen whether I am copying and pasting or just simply adding a line by hand.  Has anyone else seen this issue or am I doing something wrong? 

To add a line I right-click on the row and select add a new line above.  Once I finish the data input I leave the line to commit it.  I go to my dashboard that is displaying the store, refresh and note that there are multiple copies of the line I just added.

This does not happen with CSV file lookups, just the KV Stores.

Thoughts?  More info?

Labels (1)
0 Karma
Get Updates on the Splunk Community!

Now Available: Cisco Talos Threat Intelligence Integrations for Splunk Security Cloud ...

At .conf24, we shared that we were in the process of integrating Cisco Talos threat intelligence into Splunk ...

Preparing your Splunk Environment for OpenSSL3

The Splunk platform will transition to OpenSSL version 3 in a future release. Actions are required to prepare ...

Easily Improve Agent Saturation with the Splunk Add-on for OpenTelemetry Collector

Agent Saturation What and Whys In application performance monitoring, saturation is defined as the total load ...