Splunk Search

"DB CONNECT" app timestamp is not working

changwoo
Communicator

i am using the db connect app to get the data from my db.
i have a date formate like 2005-05-30

and my input.conf is alt text

and the error log is like this alt text

plz help~

1 Solution

mchang_splunk
Splunk Employee
Splunk Employee

Please try to increase MAX_DAYS_AGO in props.conf.
Here is the answer you can refer to:
http://answers.splunk.com/answers/24668/how-do-you-limit-the-amount-of-time-that-splunk-looks-into-t...

View solution in original post

mchang_splunk
Splunk Employee
Splunk Employee

Please try to increase MAX_DAYS_AGO in props.conf.
Here is the answer you can refer to:
http://answers.splunk.com/answers/24668/how-do-you-limit-the-amount-of-time-that-splunk-looks-into-t...

Get Updates on the Splunk Community!

Index This | I am a number, but when you add ‘G’ to me, I go away. What number am I?

March 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...

What’s New in Splunk App for PCI Compliance 5.3.1?

The Splunk App for PCI Compliance allows customers to extend the power of their existing Splunk solution with ...

Extending Observability Content to Splunk Cloud

Register to join us !   In this Extending Observability Content to Splunk Cloud Tech Talk, you'll see how to ...