Splunk Search

Logs with disorganized data- How to view logs for complete processes and not for fractions of these?

Kleydert
Loves-to-Learn Lots

Hello!

I need your help please, I need to be able to view the logs for complete processes and not for fractions of these, since when I see them from Splunk, that is, it shows me each event, belonging to the same process, separately in time intervals ( it only happens with a specific sourcetype, the others are fine)

0 Karma

yuanliu
SplunkTrust
SplunkTrust

You need to ask your admin - perhaps that's you, to tweak ingestion strategy such as line break.  This question is more suitable in Getting Data In forum.

0 Karma
Get Updates on the Splunk Community!

See just what you’ve been missing | Observability tracks at Splunk University

Looking to sharpen your observability skills so you can better understand how to collect and analyze data from ...

Weezer at .conf25? Say it ain’t so!

Hello Splunkers, The countdown to .conf25 is on-and we've just turned up the volume! We're thrilled to ...

How SC4S Makes Suricata Logs Ingestion Simple

Network security monitoring has become increasingly critical for organizations of all sizes. Splunk has ...