Dashboards & Visualizations

Customize time scale

leustean
Explorer

Hello,

I am wiring together a TimeRangePicker and a HiddenSearch/HiddenChartFormatter in order to display visualization for some statistics. I observe that in the real-time mode (let's say "5 minute window") the time axis is split in 1 minute ticks/intervals. My data gets indexed into Splunk once every 20 seconds, and in consequence auto updates the visualization. I would like to have also 20 seconds tick on the time axis so that it is clear when the date arrived. Any idea how what kind of customization should be done in order to obtain what I described above ?

Thanks

0 Karma

yAlff
Path Finder

Hello leustan,

did you try

| timechart span=20s

already?

It is referenced here: http://docs.splunk.com/Documentation/Splunk/5.0.2/SearchReference/Timechart#More_examples

leustean
Explorer

Yes, I did. I tryed several values for the span , and everytime I get 1 min tics

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Where Innovation Takes Flight: The Splunk4Aviation Flight Sim Lands at .conf26

If you hear someone at .conf26 shouting "gear down, GEAR DOWN" across the show floor, you have found us.  The ...

Turn Cisco Telemetry Into Action with Cisco Data Fabric, powered by the Splunk ...

The surge in machine data is already hitting enterprise budgets, and the agentic era will only intensify it. ...

Persistent Queue at TcpOut — One of Splunk's Most Practical Features

Splunk introduced persistent queueing at the tcpout layer as one of the most practical resilience features in ...