doksu / TA-centralops

CentralOps Technology Add-On for Splunk
MIT License
1 stars 2 forks source link

Summary Indexing Issues #3

Open doksu opened 7 years ago

doksu commented 7 years ago

Sometimes it appears that the collect command that summary indexes whois records is adding search information to _raw and aggregating events (breaking json formatting). To fix, I'm testing 9ca2ca472e1f028c5fbc3804c4e7816c1f9935b9