Getting Data In

Splunk not showing the records of Salesforce Custom Object

sanjax90
New Member

I added a custom object as one of the inputs but I am not able to see the records in Splunk. It is not visible in the sources also. The login and authentication to the salesforce org is successful as I am able to see logs/login history.

input.conf:
[sfdc_object://Expense_c]
account = san_eng24
interval = 40
limit = 1000
object = Expense
c
object_fields = Amount
c ,CreatedById,LastModifiedById,Reimbursedc ,Name,Date_c
order_by = Name

Note in the above input.conf, all objects and custom field are appended by underscore underscore 'c' . This post here is not accepting special characters so showing it in wrong way.

Can anyone help on this?

0 Karma
Get Updates on the Splunk Community!

Combine Multiline Logs into a Single Event with SOCK - a Guide for Advanced Users

This article is the continuation of the “Combine multiline logs into a single event with SOCK - a step-by-step ...

Everything Community at .conf24!

You may have seen mention of the .conf Community Zone 'round these parts and found yourself wondering what ...

Index This | I’m short for "configuration file.” What am I?

May 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with a Special ...