Dashboards & Visualizations

Is the Splunk Stream Dashboard time_taken calculation correct?


I was looking at the standard dashboards in the Splunk Stream App - for example for top 10 Longest Running Queries for Database. My question is that my understanding is that time_taken is in Milliseconds, but the dashboard uses eval(time_taken/1000000) which makes those time_taken(s) look a lot shorter in terms of time. So, my question is if I am missing something, or are those time_taken evals actually wrong for calculating seconds from milliseconds (which my little brain seems to think)? Thanks.

Tags (1)
0 Karma
Get Updates on the Splunk Community!

User Groups | Upcoming Events!

If by chance you weren't already aware, the Splunk Community is host to numerous User Groups, organized ...

Splunk Lantern | Spotlight on Security: Adoption Motions, War Stories, and More

Splunk Lantern is a customer success center that provides advice from Splunk experts on valuable data ...

Splunk Cloud | Empowering Splunk Administrators with Admin Config Service (ACS)

Greetings, Splunk Cloud Admins and Splunk enthusiasts! The Admin Configuration Service (ACS) team is excited ...