All Apps and Add-ons

How do I control the time range of the x-axis when using the timewrap command?

HattrickNZ
Motivator

I have the following search using the timewrap command to look at the values across each day:

...| timechart  span=15m min(c84150606) as "MIN CONNECTED RATIO" by type | timewrap d series=exact

How do I control the time frame of the x-axis?

It currently does 10.45am to 10.30am on the xaxis.

I want it to show midnight to 2300 i.e. include data from 00.00 .00 to 23.59.59

Can this be done?

0 Karma
1 Solution

martin_mueller
SplunkTrust
SplunkTrust

This should happen automatically once you snap your time range to the start of day.

View solution in original post

0 Karma

martin_mueller
SplunkTrust
SplunkTrust

This should happen automatically once you snap your time range to the start of day.

0 Karma

martin_mueller
SplunkTrust
SplunkTrust

Odd. Try this: earliest=-7d@d latest=+d@d

HattrickNZ
Motivator

tks that is wroking for me now.
index=.... earliest=-7d@d latest=+d@d | timechart span=15m avg(KPI1) by DeviceName | timewrap d series=exact

0 Karma

martin_mueller
SplunkTrust
SplunkTrust

Snapping earliest matters, so you can use now for latest.

0 Karma

HattrickNZ
Motivator

tks but i am doing earliest=-7d@d latest=now and it is not giving any values for today. Am I doing something wrong?

0 Karma

HattrickNZ
Motivator

do you mean earliest=@d?

0 Karma

HattrickNZ
Motivator

got something like this to work earliest=-7d@d latest=@d but this does not show the values for today. How can i do this?

0 Karma
Get Updates on the Splunk Community!

Index This | Why did the turkey cross the road?

November 2025 Edition  Hayyy Splunk Education Enthusiasts and the Eternally Curious!   We’re back with this ...

Enter the Agentic Era with Splunk AI Assistant for SPL 1.4

  🚀 Your data just got a serious AI upgrade — are you ready? Say hello to the Agentic Era with the ...

Feel the Splunk Love: Real Stories from Real Customers

Hello Splunk Community,    What’s the best part of hearing how our customers use Splunk? Easy: the positive ...