Getting Data In

How to change the timezone setting from summer to winter time?

New Member

Hi everyone !

Recently in my city, we've changed from summer to winter time and, of course, the server where Splunk is installed too. But, while all my communications devices have changed, Splunk did not. When I search an event, the syslog of my devices is one hour before the Splunk's time. Can anybody help me?


0 Karma

Super Champion

First of all , always put the core system (Linux Server for example) to UTC only. In my opinion, everything should run on UTC or otherwise every single reporting system should have timezone atleast

When it comes to UI (front-end), you can change user-prefs.conf to customise to timezone/language you require

0 Karma


Have you checked the time zone setting on your Splunk account?

If this reply helps you, an upvote would be appreciated.
0 Karma