Clients are saying they are only seeing 2 days worth of the logs.
[name]
homePath = volume:primary/name/db
coldPath = volume:primary/name/colddb
thawedPath = $SPLUNK_DB/name/thaweddb
frozenTimePeriodInSecs = 15780000
maxWarmDBCount = 300
maxHotSpanSecs=7776000
maxHotBuckets = 3
maxTotalDataSizeMB = 75000
repFactor = auto
↧