Getting Data In

Getting Date to Display Correctly - CSV Report

cruzalan90
Explorer

Hello,

I'm stumped...I'm trying to correctly display 'Date' in a scheduled CSV report. Within Splunk, date is displayed correctly:
_time

10/10/13 8:48:57.000 AM

Within CSV report:
_time
1380916998

Also tried this: |convert ctime(_time) as timestamp
But timestamp displays 10:30.1 which I than have to format cell to recognize 'Date' value. (10/6/13 12:10 PM)

Tags (3)
0 Karma
1 Solution

cruzalan90
Explorer

Took a little time to play with it but it worked!

Thank you

View solution in original post

0 Karma

cruzalan90
Explorer

Took a little time to play with it but it worked!

Thank you

0 Karma

richgalloway
SplunkTrust
SplunkTrust

Please mark my answer as accepted.

---
If this reply helps you, Karma would be appreciated.
0 Karma

richgalloway
SplunkTrust
SplunkTrust

Have you tried | eval ts=strftime(_time, "%m/%d/%y %H:%M %p") ?

---
If this reply helps you, Karma would be appreciated.
Get Updates on the Splunk Community!

Splunk Classroom Chronicles: Training Tales and Testimonials (Episode 4)

Welcome back to Splunk Classroom Chronicles, our ongoing series where we shine a light on what really happens ...

From GPU to Application: Monitoring Cisco AI Infrastructure with Splunk Observability ...

AI workloads are different. They demand specialized infrastructure—powerful GPUs, enterprise-grade networking, ...

Application management with Targeted Application Install for Victoria Experience

  Experience a new era of flexibility in managing your Splunk Cloud Platform apps! With Targeted Application ...