for example i will search for 'isnwmkflbndd15eyhwtn0rk1' and splunk will return this snippet,
2012-03-06 08:50:04,177 [41] [sid=isnwmkflbndd15eyhwtn0rk1] INFO OfferHistoryProcessor - Sending request to service bus...
and that's all there is when i show source in splunk. when in reality the actual log has a lot more information in it.
it looks like splunk is setting a timestamp for the complete logs for some date in the future and i'll get all the results i'm looking for if i set my time range to all time.
... View more