Splunk Search

How do I solve adding data inputs into DB Connect?

napoleon_bing
New Member

I have successfully made an identity and connection. And have successfully validated that I am able to connect. ATM I am now attempting to add in a data input, however when I execute the query in Advanced mode, the "continue" button continues to be grayed out. In addition when I attempt to execute the query in simple mode the table drop down menu is populated with the tables within my DB, but can still not execute the query. My question then becomes what have I done wrong, or what am I missing in order to make this work? I have made this in a docker located at nvisibl3/splunk-java.

Tags (1)
0 Karma

vasanthmss
Motivator

Once the connectivity is succeeded there should not be any issues. Since you are facing the issue while advance mode, I guess you may not used the data base name. as a best practice try with the below sample,

select * from schema.database.table/view; 

Check with the below link,

http://docs.splunk.com/Documentation/AddOns/released/Oracle/ConfigureSplunkDBConnectinputsv2

Hope this will helps you

V

napoleon_bing
New Member

I tried the query you suggested, however I am still unable to return any results.

0 Karma

vasanthmss
Motivator

Could you explain bit more.with sample query. And where you are searching...

V
0 Karma

napoleon_bing
New Member

Sure. I am trying to grab the IP and hostname information from a JSS database. The query I am attempting to run is '''SELECT computer_name, last_ip, last_reported_ip FROM computers;'''

0 Karma

davebrooking
Contributor

What troubleshooting have you performed? Do any meaningful diagnostics appear in the logs mentioned in the troubleshooting guide? If not, I'd also change the logging level as described in the documentation and re-examine the logs.

Dave

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

Observability Simplified: Combining User Experience, Application Performance & ...

Tech Talk Observability Simplified: Combining User Experience, Application Performance & Network ...

Event Series May & June: From Network Visibility to Service Intelligence

Unifying the Network: Moving from Alert Noise to Service Intelligence with Splunk ITSI In today’s hybrid ...