Splunk Enterprise

DB Connect indexing query results as single item


We recently setup a new Splunk system and were in the process of migrating some existing DBX based database inputs over to the new system when we found that the new platform is now treating the entire result set of the query as a single item when indexing the data, instead of treating every record in the result set as a separate indexed item.

Is there a configuration file that needs to be edited to rectify this, as we're copying the available settings in the actual DBX db input screen exactly.

Any help would be appreciated.

Tags (2)
0 Karma

Splunk Employee
Splunk Employee
0 Karma
Get Updates on the Splunk Community!

Sending Metrics to Splunk Enterprise With the OpenTelemetry Collector

This blog post is part of an ongoing series on OpenTelemetry. The OpenTelemetry project is the second largest ...

What's New in Splunk Cloud Platform 9.0.2208?!

Howdy!  We are happy to share the newest updates in Splunk Cloud Platform 9.0.2208! Analysts can benefit ...

Want a chance to win $500 to the Splunk shop? Take our IT Incident Management Survey!

  Top Trends & Best Practices in Incident ManagementSplunk is partnering up with Constellation Research to ...