Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

You will then be brought to the system log, which matches the data that is extracted and sent to Splunk.

...

Field Mapping

...

Field

...

Description

...

Unit of Measure

...

AREA

...

System Log: Group of 36 System Log Messages

...

String

...

BEWERTUNG

...

Evaluation Path

...

String

...

CLASID

...

System Log: Classification ID for Messages

...

String

...

CURRENT_TIMESTAMP

...

The date time stamp when the information was collected

...

YYYYMMDDHHMMSS

...

DATE

...

Date

...

DD.MM.YYYY

...

DATE_INT

...

CHAR08

...

YYYYMMDD

...

DEVCLASS

...

Package

...

String

...

EVENT_SUBTYPE

...

String

...

EVENT_TYPE

...

SM21_LOG

...

String

...

FILE_NO

...

SysLog: File number

...

Number

...

ICON

...

Icon for Priority Status

...

String

...

INSTID

...

SysLog: Instance name (System & Computer & Number)

...

String

...

MAND

...

TODO: Client

...

Number

...

POS

...

SysLog: File offset

...

Number

...

REPNA

...

Program Name

...

String

...

SUBID

...

System log: Third character of message name

...

String

...

TASK

...

System log: SAP process name

...

String

...

TERMINAL

...

Terminal name

...

String

...

TEXT

...

Database Error Message

...

String

...

TIME

...

Time

...

HH:MM:SS

...

TRANSCODE

...

Transaction Code

...

String

...

TSKNA

...

Type

...

String

...

TSKNU

...

Type

...

Number

...

USER

...

System log: SAP user name

...

String

...

UTCDIFF

...

The UTC OFFSSET in HHMMSS that the data was collected in

...

HHMMSS

...

UTCSIGN

...

The UTC positive or negative OFFSET indicator. Positive (+) means add UTCDIFF to find the time zone of the data, negative (-) means subtract the UTCDIFF to find the time zone adjusted date time the data was collected in.

...

+ | -