We've installed Microsoft Office 365 Reporting Add-On for Splunk recently and able to get the message log. However, with the setting "Interval=15" (sec), there is still "Index: 1999" within a few hours.
Is there any recommended value for interval, say 5 sec or 10 sec? Thanks
James
... View more