When I run the search as per your suggestion I get: Could not load lookup=LOOKUP-splunk_security_essentials. However I have noticed another issue today. Up until the last couple of days the main search would give me no results, or results that don't make sense because the data would be pulled form a Report.csv which was few days old. I would still see the data properly indexed though, if i did: index="BBB". When I ran index="BBB" today, I noticed that the Report.csv from the last two days have not been indexed. This has never happened before, and not sure why it would suddenly stop indexing. I couldn't find any errors in the logs related to the index.
... View more