Dataiku Splunk Plugin

Options
shivangisingh88
shivangisingh88 Dataiku DSS Core Designer, Dataiku DSS ML Practitioner, Dataiku DSS Adv Designer, Registered Posts: 2

I am trying to import logs from Splunk using the Splunk plugin. I just see 9 rows being populated when on the Splunk UI I see 45000 rows. Is there a place where we can do some changes in order get the full data at once on dataiku via splunk?

Tagged:

Answers

  • Alexandru
    Alexandru Dataiker, Dataiku DSS Core Designer, Dataiku DSS ML Practitioner, Dataiku DSS Adv Designer, Registered Posts: 1,209 Dataiker
    Options

    Hi,
    It's hard to exactly why see only see 9 rows.
    Is the schema detected correctly? Perhaps it's incomplete and only matches those 9 rows or the Search string/INdex Nameare not on the index you see 45000 rows in.

    Could you try to perform a sync recipe from the Splunk dataset to the local filesystem or any storage and share that job diagnostics with Dataiku support so we can review it?


    Thanks

  • ChrisWalter
    ChrisWalter Registered Posts: 11
    Options

    Hey there! I had a similar issue with the Dataiku Splunk plugin. Try checking the data sampling settings in Dataiku, it might be limiting the number of rows imported. Adjusting that should help you get all your data at once. Good luck!

Setup Info
    Tags
      Help me…