Dashboards & Visualizations

How to get date range in report from search?

KristianLind
Explorer

Hi, I have a search and a report for the search. 
How can I get the date range in the report? 

2022-05-17_13-32-51.jpg2022-05-17_13-35-02.jpg

0 Karma
1 Solution

ITWhisperer
SplunkTrust
SplunkTrust
| fieldformat info_min_time=strftime(info_min_time,"%F %T")

View solution in original post

ITWhisperer
SplunkTrust
SplunkTrust
| addinfo

This adds info fields to the event - info_min_time is the earliest, info_max_time is the latest from the search being executed.

0 Karma

KristianLind
Explorer

Thanks 🙂 
Can I get that in human readable format? 

Tags (1)
0 Karma

ITWhisperer
SplunkTrust
SplunkTrust
| fieldformat info_min_time=strftime(info_min_time,"%F %T")

KristianLind
Explorer

awesome 🙂 
Can I remove some fields from addinfo  from the result. 
e.g I don't need

 2022-05-17_14-02-44.jpg

0 Karma

ITWhisperer
SplunkTrust
SplunkTrust
| fields - info_*
Get Updates on the Splunk Community!

Splunk Enterprise Security(ES) 7.3 is approaching the end of support. Get ready for ...

Hi friends!    At Splunk, your product success is our top priority. With Enterprise Security (ES), we're here ...

Splunk Enterprise Security 8.x: The Essential Upgrade for Threat Detection, ...

Watch On Demand the Tech Talk, and empower your SOC to reach new heights! Duration: 1 hour  Prepare to ...

Splunk Observability for AI

Don’t miss out on an exciting Tech Talk on Splunk Observability for AI!Discover how Splunk’s agentic AI ...