<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Splunk Set Source Type format Timestamp strptime field examples in Getting Data In</title>
    <link>https://community.splunk.com/t5/Getting-Data-In/Splunk-Set-Source-Type-format-Timestamp-strptime-field-examples/m-p/568336#M100873</link>
    <description>&lt;P&gt;As you can clearly see, in the first photo is my .csv field setup with times resembling as&amp;nbsp;1632177107637870.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The second photo, is how i want to import it.&lt;/P&gt;</description>
    <pubDate>Fri, 24 Sep 2021 07:22:51 GMT</pubDate>
    <dc:creator>bogdan_nicolesc</dc:creator>
    <dc:date>2021-09-24T07:22:51Z</dc:date>
    <item>
      <title>Splunk Set Source Type format Timestamp strptime field examples</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Splunk-Set-Source-Type-format-Timestamp-strptime-field-examples/m-p/568312#M100867</link>
      <description>&lt;P&gt;Hi all,&lt;BR /&gt;&lt;BR /&gt;I'm trying hard to add data into Splunk from a .csv file instead of .json. I managed to convert it from .json to .csv and now, when i try to alter &amp;lt;&lt;SPAN&gt;Timestamp format &amp;gt; using&amp;nbsp;strptime() is showing me time from the adding time, not the time from the field time inside the .csv that is in Epoch Unix Timestamp.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;I have read this resource,&amp;nbsp; &lt;A href="https://docs.splunk.com/Documentation/SplunkCloud/8.2.2107/Data/Configuretimestamprecognition" target="_blank" rel="noopener"&gt;https://docs.splunk.com/Documentation/SplunkCloud/8.2.2107/Data/Configuretimestamprecognition&lt;/A&gt;&lt;/P&gt;&lt;P&gt;but to no avail ...&lt;BR /&gt;&lt;BR /&gt;Please advice ...&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 23 Sep 2021 22:23:43 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Splunk-Set-Source-Type-format-Timestamp-strptime-field-examples/m-p/568312#M100867</guid>
      <dc:creator>bogdan_nicolesc</dc:creator>
      <dc:date>2021-09-23T22:23:43Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk Set Source Type format Timestamp strptime field examples</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Splunk-Set-Source-Type-format-Timestamp-strptime-field-examples/m-p/568332#M100871</link>
      <description>&lt;P&gt;Please share and example of the csv and the configuration you are using to ingest it&lt;/P&gt;</description>
      <pubDate>Fri, 24 Sep 2021 06:39:23 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Splunk-Set-Source-Type-format-Timestamp-strptime-field-examples/m-p/568332#M100871</guid>
      <dc:creator>ITWhisperer</dc:creator>
      <dc:date>2021-09-24T06:39:23Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk Set Source Type format Timestamp strptime field examples</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Splunk-Set-Source-Type-format-Timestamp-strptime-field-examples/m-p/568336#M100873</link>
      <description>&lt;P&gt;As you can clearly see, in the first photo is my .csv field setup with times resembling as&amp;nbsp;1632177107637870.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The second photo, is how i want to import it.&lt;/P&gt;</description>
      <pubDate>Fri, 24 Sep 2021 07:22:51 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Splunk-Set-Source-Type-format-Timestamp-strptime-field-examples/m-p/568336#M100873</guid>
      <dc:creator>bogdan_nicolesc</dc:creator>
      <dc:date>2021-09-24T07:22:51Z</dc:date>
    </item>
  </channel>
</rss>

