Hi Team,
Report received from Splunk is incomplete and not generating.
Where could we see date format on Splunk. Thanks,
Regards,
Sateesh
Thanks for your response!
External server logs are being collected, but Splunk dashboards are not reflecting the data. Thanks,
There's so many things that can be wrong.
1. The data can be _not_ getting ingested properly.
2. The data can be not onboarded properly so that it's not properly understood by Splunk
3. Your dashboards or whatever means of searching your data can be not properly configured
4. The user can have no permissions to access the data
...
Hi @PONAS
We will need a little more info on this please. You say its incomplete but also not generating, is it that sometimes it generates and sometimes not? Are there definitely events output when it isnt generated?
Are you currently seeing date in a format you'd like to change? If so what is the desired format?
Please could you post the SPL of your search so that we can try and help you.
🌟 Did this answer help you? If so, please consider:
Your feedback encourages the volunteers in this community to continue contributing