Hi All,
I haven't been able to find an answer on here that has fixed my problem.
Yes, I have followed all of the instructions on the Github and I have tried on a Windows10 VM and also on my home lab. It's been 8 hours of troubleshooting and I am not able to get my SPLUNK to recognize the data set.
I have put this data into my SPLUNK > ETC/APPS and several other locations, to try to have the instance ingest the data - to no avail.
PLEASE HELP! I just want to learn and it's impeding my progress! Even though this is also a learning process 😉
index=botsv3 earliest=0