I am a beginner learning splunk. I have data that I want to read through the splunk, it is firewall data with a size of 2.7 gb. In the free enterprise version, the maximum data upload from a computer is 500 MB. What is the solution so that I can still process my large firewall data?
There is a limit to the amount of data you can import in a day.
If you have a date in your log, why don't you break it down into several days?
2.7 GB of firewall log data in one day. In your opinion, what tool do you recommend to use to split a .csv file into smaller pieces.