Quantcast
Channel: Questions in topic: "splunk-enterprise"
Viewing all articles
Browse latest Browse all 47296

Is there max limit for output appended lookup?

$
0
0
we currently scheduled an alert to run a dns lookup and append the results to lookup csv...something weird came up. most data are pushed to the csv..but few of them did not make it. I dont understand why... is there any max output limit for something like this: |outputlookup append=true xxx.csv plus, is there any better and neater ways to reserve dns lookup for host names?

Viewing all articles
Browse latest Browse all 47296

Trending Articles