Splunk Enterprise

DB Connect Log Files

dorgra
Path Finder

We're using DB Connect v3.1.4
Occasionally, an SQL Query in a Data Lab Input gets changed. I need to know where the log files are located and if they are ingested into Splunk. That way, I can alert when the query is altered. 

Labels (2)
0 Karma
1 Solution

dorgra
Path Finder

Figured this one out by gleaning information from the Deploy DBX documentation at 

https://docs.splunk.com/Documentation/DBX/3.5.0/DeployDBX/AboutSplunkDBConnect

In the DBConnect Configuration -> Settings, under Logging, the dbinput should be changed to DEBUG in order to have the app write the db_inputs.conf changes to log. 

index=_internal sourcetype=dbx* db_input action=build_scheduled_job_for_db_input

I do NOT know how verbose logging is with this setting. 

View solution in original post

0 Karma

dorgra
Path Finder

Figured this one out by gleaning information from the Deploy DBX documentation at 

https://docs.splunk.com/Documentation/DBX/3.5.0/DeployDBX/AboutSplunkDBConnect

In the DBConnect Configuration -> Settings, under Logging, the dbinput should be changed to DEBUG in order to have the app write the db_inputs.conf changes to log. 

index=_internal sourcetype=dbx* db_input action=build_scheduled_job_for_db_input

I do NOT know how verbose logging is with this setting. 

0 Karma
Get Updates on the Splunk Community!

AI for AppInspect

We’re excited to announce two new updates to AppInspect designed to save you time and make the app approval ...

App Platform's 2025 Year in Review: A Year of Innovation, Growth, and Community

As we step into 2026, it’s the perfect moment to reflect on what an extraordinary year 2025 was for the Splunk ...

Operationalizing Entity Risk Score with Enterprise Security 8.3+

Overview Enterprise Security 8.3 introduces a powerful new feature called “Entity Risk Scoring” (ERS) for ...