All Apps and Add-ons

Trying to apply timestamp from an epoch format column in db connect

brevisfranco
New Member

Hello guys,
I am new here in splunk and in my first project I have to index logs from a remote server and I am doing this with db connect.

My problem is that when I index all the data from this server, the Time that is login into splunk is the Time when Splunk pull the data and I need to log these event by the time that they are generated.

I figured out that when you pull data by the first time with db connect, you can indicate the timestamp by a column of the data base, luckily these db have a time column called "clock", but unforntunlly this time format is in epoch, like so: alt text

So my question is, what do I have to write over here?: alt text

I tryed with %s without any results. Thank you c:

0 Karma
Get Updates on the Splunk Community!

Upcoming Webinar: Unmasking Insider Threats with Slunk Enterprise Security’s UEBA

Join us on Wed, Dec 10. at 10AM PST / 1PM EST for a live webinar and demo with Splunk experts! Discover how ...

.conf25 technical session recap of Observability for Gen AI: Monitoring LLM ...

If you’re unfamiliar, .conf is Splunk’s premier event where the Splunk community, customers, partners, and ...

A Season of Skills: New Splunk Courses to Light Up Your Learning Journey

There’s something special about this time of year—maybe it’s the glow of the holidays, maybe it’s the ...