Splunk cannot read csv updated by lookupeditor correctly.
For example, in the following cases, Splunk cannot read correctly.
1. Pressed the Save button without changing the contents
2. Added a row at the bottom of csv file
However, Splunk can be read correctly in the following cases.
1. Pressed the Save button with changing the contents
2. Added a row between rows of csv file
Does anyone have a similar problem?
Any help will be greatly appreciated.
Regards,
Kagiyama
... View more