Alerting

what format should cron be when setting up a schedule

HattrickNZ
Motivator

sorry forthis simplistic question I just can't work it out from the instructions.

here I want to set up a cron job to run every day at 3:03 a.m.

when seeting up a cron job(see pic beow) what format should the paramter be in in the input box below in the pic:
1 - no quotes
03 3 * * *
2 - single quotes
'03 3 * * *'
3 - other single quotes forget the name
03 3 * * *

alt text

Tags (3)
0 Karma
1 Solution

MuS
SplunkTrust
SplunkTrust

Hi HattrickNZ,

well, have you tried to use ' or " in the cron field?
If you do so, you will get this error:

Encountered the following error while trying to save: In handler 'savedsearch': Invalid cron_schedule="'* 5 * * *'"

So, the answer is: No quotes of any kind are needed in the cron entry field.

cheers, MuS

View solution in original post

0 Karma

MuS
SplunkTrust
SplunkTrust

Hi HattrickNZ,

well, have you tried to use ' or " in the cron field?
If you do so, you will get this error:

Encountered the following error while trying to save: In handler 'savedsearch': Invalid cron_schedule="'* 5 * * *'"

So, the answer is: No quotes of any kind are needed in the cron entry field.

cheers, MuS

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

SOC4Kafka - New Kafka Connector Powered by OpenTelemetry

The new SOC4Kafka connector, built on OpenTelemetry, enables the collection of Kafka messages and forwards ...

Event Series: Level up your SOC: Advancing with Splunk Enterprise Security

AI has fundamentally raised the stakes for security operations, and this three-part series is your guide to ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...