You can not select more than 25 topics
Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.
20 lines
407 B
20 lines
407 B
[socradar:incidents]
|
|
TRUNCATE = 100000
|
|
SHOULD_LINEMERGE = 0
|
|
KV_MODE = json
|
|
category = Splunk App Add-on Builder
|
|
pulldown_type = 1
|
|
|
|
[source::...ta-socradar-incidents*.log*]
|
|
sourcetype = tasocradarincidents:log
|
|
|
|
[source::...ta_socradar_incidents*.log*]
|
|
sourcetype = tasocradarincidents:log
|
|
|
|
[socradar:status:updates]
|
|
SHOULD_LINEMERGE = 0
|
|
category = Splunk App Add-on Builder
|
|
pulldown_type = 1
|
|
KV_MODE = json
|
|
|