All Apps and Add-ons

Timeline - Custom Visualization: Can full date time DD/MM/YY HH:MM tooltip options be added?

snoobzilla
Builder

We have timelines that span 30 days with events we want to see begin/end down to the minute or second on Tool Tips.

Please add options for Tooltips time format:
DD/MM/YY HH:MM:SS
DD/MM/YY HH:MM

Cool visualization, but need more control. Also see other requests for legend and left label width control.

1 Solution

frobinson_splun
Splunk Employee
Splunk Employee

Hi @snoobzilla,
Thanks for your suggestions. I have passed your request along to our engineering team to consider for an upcoming release. Please stay tuned!

View solution in original post

dsiob
Communicator

Yes!! it is possible. Make changes to two .js files as below:

  1. \Splunk\etc\apps\timeline_app\appserver\static\visualizations\timeline\src\timline.js
  2. \Splunk\etc\apps\timeline_app\appserver\static\visualizations\timeline\visualization.js

alt text

alt text

save files and Logout and re-login splunk to reflect the changes.

In this case I used '%a %H : %M' as desired time format. Any format can be used including "DD/MM/YY HH:MM"

risgupta_splunk
Splunk Employee
Splunk Employee

Yes, it is possible to add. you just need to edit the .js file for the app under location :

Splunk_HOME\etc\apps\timeline_app\appserver\static\visualizations\timeline\src\timeline.js

You'll have to play around with those locations for time_format.

Don't forget to run "npm run build" after you modify the JS. And disable caching on Splunk.
https://docs.splunk.com/Documentation/Splunk/6.5.0/AdvancedDev/CustomVizTutorial

0 Karma

snoobzilla
Builder

Thanks... don't have admin access. Will be waiting for it to be added to app.

0 Karma

frobinson_splun
Splunk Employee
Splunk Employee

Hi @snoobzilla,
Thanks for your suggestions. I have passed your request along to our engineering team to consider for an upcoming release. Please stay tuned!

gpullis
Communicator

I'd like YYYY-MM-DD HH:MM as an option, please.

Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

A Four-Part Event Series: Full Stack Observability For the AI Era

As AI reshapes applications, infrastructure, and the way teams operate, the traditional boundaries of ...

SOC4Kafka - New Kafka Connector Powered by OpenTelemetry

The new SOC4Kafka connector, built on OpenTelemetry, enables the collection of Kafka messages and forwards ...

Event Series: Level up your SOC: Advancing with Splunk Enterprise Security

AI has fundamentally raised the stakes for security operations, and this three-part series is your guide to ...