Hello - Admitted new guy here, I have a heavy forwarder sending data from a MySql database table into Splunk once a day. Works great. But now I want to send the data from a 'customer' type table with about 200 rows, and I would like to replace the data every day, rather than append 200 new rows in the index every day. How is this best accomplished? Tried searching, but I may not even be using the correct terminology.
... View more