Getting Data In

How do I change a CSV timestamp?

miguel1423
Explorer

Hello,

I add an CSV data into my splunk without any timestamp and SPLUNK add automatiquely an timestamp with the format "3/16/22 4:33:55.000 PM" I would like change the date on the format "3/16/22" how can I do that ? 

 

Regards,

 

 

Labels (2)
0 Karma

VatsalJagani
SplunkTrust
SplunkTrust

Can you please provide sample data or screenshot of which timestamp you are talking about?

And also how you have added the CSV in Splunk.

0 Karma

vinod743374
Communicator

You Can try Like this,

| eval timeformat=strftime(_time,"%m/%d/%y")

vinod743374_0-1648704080855.png

 

0 Karma
Get Updates on the Splunk Community!

AppDynamics Summer Webinars

This summer, our mighty AppDynamics team is cooking up some delicious content on YouTube Live to satiate your ...

SOCin’ it to you at Splunk University

Splunk University is expanding its instructor-led learning portfolio with dedicated Security tracks at .conf25 ...

Credit Card Data Protection & PCI Compliance with Splunk Edge Processor

Organizations handling credit card transactions know that PCI DSS compliance is both critical and complex. The ...