Dashboards & Visualizations

Comparing dashboards in different time zones

ranjan01
Engager

Hey All,

Recently, I have migrated data from some indexes from a distributed Splunk instance to clustered Splunk instance using bucket migration approach.

After the indexes data migration , I can see the same data and event counts for each indexes in both the old and new instance for a specific time range set manually from the time range filter.

But, since the older instance is in EDT time zone and new instance is in UTC time zone,  when I am comparing the dashboards for validation purpose which uses those indexes , I can see the count mismatch because of the time zone difference.  

I tried changing the preference to same time zones in both the instances but its not working.

Can anyone please help and let me know how can this issue be resolved so that the dashboards can be validated without setting the time range manually every time.

Labels (1)
0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Network to App: Observability Unlocked [May & June Series]

In today’s digital landscape, your environment is no longer confined to the data center. It spans complex ...

SPL2 Deep Dives, AppDynamics Integrations, SAML Made Simple and Much More on Splunk ...

Splunk Lantern is Splunk’s customer success center that provides practical guidance from Splunk experts on key ...

[Puzzles] Solve, Learn, Repeat: Matching cron expressions

This puzzle (first published here) is based on matching timestamps to cron expressions.All the timestamps ...