...
- What is Splunk doing to format the text file into what we see in Splunk for NGAP 1.0?
- Marcus: No reformatting is happening. Splunk adds sourcetype and timestamp, but not heavy reformatting or anything.
- What was done in NGAP 1.0 for formatting/sourcetypes and can it be done for 1.1?
- Who put the sourcetypes together? How did they do it?
- Marcus suspects it is someone on the NGAP side. Maybe Andrew?
- Did Docker break this? Hard to tell if we don't have sourcetypes.
- Should be able to use sourcetypes if we want (and configure them).
- Would using Cloudwatch solve our problems? Doesn't solve concatenate, but would provide raw lines.
- Assess what is a go/no-go for EDSC into Prod on Wednesday.
...
{"serverDuration": 231, "requestCorrelationId": "e2a8aa988241b3e4"}