Getting Data In

How to change the timezone setting from summer to winter time?

rf_aperez
New Member

Hi everyone !

Recently in my city, we've changed from summer to winter time and, of course, the server where Splunk is installed too. But, while all my communications devices have changed, Splunk did not. When I search an event, the syslog of my devices is one hour before the Splunk's time. Can anybody help me?

Thanks.

0 Karma

koshyk
Super Champion

First of all , always put the core system (Linux Server for example) to UTC only. In my opinion, everything should run on UTC or otherwise every single reporting system should have timezone atleast

When it comes to UI (front-end), you can change user-prefs.conf to customise to timezone/language you require

0 Karma

richgalloway
SplunkTrust
SplunkTrust

Have you checked the time zone setting on your Splunk account?

---
If this reply helps you, Karma would be appreciated.
0 Karma
Get Updates on the Splunk Community!

Building Reliable Asset and Identity Frameworks in Splunk ES

 Accurate asset and identity resolution is the backbone of security operations. Without it, alerts are ...

Cloud Monitoring Console - Unlocking Greater Visibility in SVC Usage Reporting

For Splunk Cloud customers, understanding and optimizing Splunk Virtual Compute (SVC) usage and resource ...

Automatic Discovery Part 3: Practical Use Cases

If you’ve enabled Automatic Discovery in your install of the Splunk Distribution of the OpenTelemetry ...