Dashboards & Visualizations

Splunk Time range picker passing wrong timestamp to dashbaord

architkhanna
Path Finder

I have few dashboards in Splunk 7.1.4 for a client whose data source is their Jira tool.
Both Splunk and jira are in same time format(GMT)
However, when I chose some date or date and time range from time picker, I am getting a difference of around 5-5 and a half hour value of time being passed onto the dashboard.


Example, I chose may 15 00: hour-June14 23:59 in date range from time picker, values passed on dashboard are 1589481000 and 1592159400,whose date values are :

1589481000 : Thursday, May 14, 2020 6:30:00 PM

1592159400 : Sunday, June 14, 2020 6:30:00 PM

Is there a way/reason why splunk is doing that and passing wrong date/time from my chosen values?

Labels (1)
0 Karma

niketn
Legend

@architkhanna  check what is your logged in User Time Zone. Is it GMT or IST?

https://docs.splunk.com/Documentation/Splunk/latest/Security/ConfigureuserswithSplunkWeb

____________________________________________
| makeresults | eval message= "Happy Splunking!!!"
0 Karma

architkhanna
Path Finder

Both splunk and data source are in GMT

0 Karma

niketn
Legend

Just wanted to confirm with you what is the Date format you are passing is it relative time or absolute like Date Range? Also can you add some sample data and screenshot of example? If you have Splunk Entitlement, work with Splunk Support to find the root cause, workaround and solution of the issue.

I am curious if you are hitting the following bug (please check and confirm): https://community.splunk.com/t5/Dashboards-Visualizations/7-1-Dashboards-not-converting-timepicker-t...

____________________________________________
| makeresults | eval message= "Happy Splunking!!!"
0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

SOC4Kafka - New Kafka Connector Powered by OpenTelemetry

The new SOC4Kafka connector, built on OpenTelemetry, enables the collection of Kafka messages and forwards ...

Event Series: Level up your SOC: Advancing with Splunk Enterprise Security

AI has fundamentally raised the stakes for security operations, and this three-part series is your guide to ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...