<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Failed to parse epoch timestamp for Checkpoint Opsec in Getting Data In</title>
    <link>https://community.splunk.com/t5/Getting-Data-In/Failed-to-parse-epoch-timestamp-for-Checkpoint-Opsec/m-p/175891#M98304</link>
    <description>&lt;P&gt;Splunk isn’t  recognizing the date from the opsec.logs since the date is being sent in a localized format&lt;/P&gt;</description>
    <pubDate>Thu, 08 Jan 2015 13:49:16 GMT</pubDate>
    <dc:creator>rsimmons</dc:creator>
    <dc:date>2015-01-08T13:49:16Z</dc:date>
    <item>
      <title>Failed to parse epoch timestamp for Checkpoint Opsec</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Failed-to-parse-epoch-timestamp-for-Checkpoint-Opsec/m-p/175891#M98304</link>
      <description>&lt;P&gt;Splunk isn’t  recognizing the date from the opsec.logs since the date is being sent in a localized format&lt;/P&gt;</description>
      <pubDate>Thu, 08 Jan 2015 13:49:16 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Failed-to-parse-epoch-timestamp-for-Checkpoint-Opsec/m-p/175891#M98304</guid>
      <dc:creator>rsimmons</dc:creator>
      <dc:date>2015-01-08T13:49:16Z</dc:date>
    </item>
    <item>
      <title>Re: Failed to parse epoch timestamp for Checkpoint Opsec</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Failed-to-parse-epoch-timestamp-for-Checkpoint-Opsec/m-p/175892#M98305</link>
      <description>&lt;P&gt;This can be resolve by modifying DATESTAMP = epoch (“unix”) and by doing this don't need to set TZs.  You will need to edit DATESTAMP properties under fw1-loggrabber.conf file so that it is indexed properly.&lt;/P&gt;</description>
      <pubDate>Thu, 08 Jan 2015 13:49:41 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Failed-to-parse-epoch-timestamp-for-Checkpoint-Opsec/m-p/175892#M98305</guid>
      <dc:creator>rsimmons</dc:creator>
      <dc:date>2015-01-08T13:49:41Z</dc:date>
    </item>
  </channel>
</rss>

