Dashboards & Visualizations

How to change UST timezone to PST time?

karthi2809
Builder

In my splunk dashboard i have table with time stamp of UST time .But my team is working in multiple timezone .So they want me to make default PST timezone in dashboard.How can we acheive this in splunk dashboard?

Labels (3)
0 Karma

sainag_splunk
Splunk Employee
Splunk Employee

Hello! The key point is that Splunk stores all data in UTC, but displays it based on user preferences. This approach allows for flexibility without changing the actual data or dashboard configuration.

Here's an example to illustrate:

Let's say you have team members in New York (EST) and San Francisco (PST). An event occurs at 2:00 PM PST.

  1. The event is stored in Splunk as 10:00 PM UTC.
  2. The San Francisco team member (with PST preference) sees it as 2:00 PM.
  3. The New York team member (with EST preference) sees it as 5:00 PM.

Both are looking at the same data, but it's displayed in their local time.

To achieve this:

  1. Ensure correct timestamp configuration on data sources.
  2. Each user sets their preferred timezone in Splunk settings.

This method maintains data consistency while accommodating different timezones without modifying dashboards.

Please Upvote if this is Helpful.

If this helps, Upvote!!!!
Together we make the Splunk Community stronger 
0 Karma
Get Updates on the Splunk Community!

Accelerating Observability as Code with the Splunk AI Assistant

We’ve seen in previous posts what Observability as Code (OaC) is and how it’s now essential for managing ...

Integrating Splunk Search API and Quarto to Create Reproducible Investigation ...

 Splunk is More Than Just the Web Console For Digital Forensics and Incident Response (DFIR) practitioners, ...

Congratulations to the 2025-2026 SplunkTrust!

Hello, Splunk Community! We are beyond thrilled to announce our newest group of SplunkTrust members!  The ...