Splunk Search

How can I find out the length of a line in a log file?

Path Finder

We have a CSV file that we import into splunk daily. We have at least one line that is too long and is possibly corrupted. How can I find out the maximum line length of a raw event in the CSV. That is to say, the length of the full line, not the length of the individual fields in the CSV.

Tags (2)
0 Karma


Assuming single-line events, eval can do it:

| eval line_length=len(_raw)