Alerting

Cron expression for splunk DB connect

dkgs
Communicator

Hi,

I want the query in db connect to execute everyday between 8PM and 11 PM for every 2 minutes. Please help with the cron expression to be provided in the db connect

Labels (3)
0 Karma
1 Solution

willemjongeneel
Communicator

Hello,

I think the following cron will do: 

*/2 8-10 * * *

Kind regards,

Willem

View solution in original post

willemjongeneel
Communicator

Hello,

I think the following cron will do: 

*/2 8-10 * * *

Kind regards,

Willem

dkgs
Communicator

thank you. 

But the time is between 20 to 23 .

0 Karma

isoutamo
SplunkTrust
SplunkTrust

As it was PM then replace 8-11 to 20-23.

r. Ismo

willemjongeneel
Communicator

Ah yes thats right, but shouldn't it be 20 - 22 then? As it gets every second minute past hour 22. Or am I mistaken? 

Kind regards,

Willem

0 Karma

isoutamo
SplunkTrust
SplunkTrust

that’s true. 

Get Updates on the Splunk Community!

Splunk Enterprise Security 8.x: The Essential Upgrade for Threat Detection, ...

 Prepare to elevate your security operations with the powerful upgrade to Splunk Enterprise Security 8.x! This ...

Get Early Access to AI Playbook Authoring: Apply for the Alpha Private Preview ...

Passionate about security automation? Apply now to our AI Playbook Authoring Alpha private preview ...

Reduce and Transform Your Firewall Data with Splunk Data Management

Managing high-volume firewall data has always been a challenge. Noisy events and verbose traffic logs often ...