SAP Knowledge Base Article - Preview

3772432 - HANA audit logs missing in ETD : normalizer shows 'unparseable date' due to incorrect hana view — SAP Enterprise Threat Detection

Symptom

  • HANA audit log events do not appear in ETD even though the ETD log collector reports: "The number of errors is 0 and the total number of events is: 574".
  • ETD normalizer logs contain the error: Exception Type: com.sap.etd.commons.runtimeparser.processing.extraction.HdbExtractionException
    Error message:java.text.ParseException, LastRegex: (?:<.+>)?(?<ts>.+)\s\S+\sHDB.+, Unparseable date: 2026 JAN 16 
  • ETD normalizer references HdbExtractionException with pattern context: "LastRegex: (?:<.+>)?(?.+)\\s\\S+\\sHDB.+".


Read more...

Environment

  • Product: SAP Enterprise Threat Detection
  • SAP ETD (on-Premise/ Private Cloud)

Product

SAP Enterprise Threat Detection 2.0

Keywords

hana audit logs missing, etd logs not visible, database subscriber, normalizer error, unparseable date, 2026 JAN 16, AUDIT_LOG_VIEW_ETD, hana view definition, timestamp parsing, HdbExtractionException, hdb extractor, etd normalizer, hana audit ingestion, log collector shows events, parsing failure , KBA , BC-SEC-ETD-OPC , SAP ETD (on-Premise/ Private Cloud) , Problem

About this page

This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).

Search for additional results

Visit SAP Support Portal's SAP Notes and KBA Search.