Getting Data In

WebLogic add-on is not parsing UTC time zone correctly but does correct with GMT

seva98
Path Finder

I've discovered issue with WebLogic add-on (1.0.0) for Splunk and I am having hard time figuring out how to fix props.conf to parse timestamp correctly.

My Splunk instance is in CEST. There is string with timezone after timestamp and CEST/GMT are parsed correctly but UTC is not.

Server #1 - Correct

 

 

####<Oct 5, 2022 5:00:21 PM CEST> <Info> ...

Parsed timestamp: 10/5/22 5:00:21.000 PM

 

 

 

Server #2 - correct

 

 

####<Oct 5, 2022 3:24:11 PM GMT> <Info> ...

Parsed timestamp: 10/5/22 5:24:11.000 PM

 

 

 

Server #3 - incorrect

 

 

####<Oct 5, 2022 4:30:23 PM UTC> <Info>

Parsed timestamp: 10/5/22 4:30:23.000 PM
Should be: 10/5/22 6:30:23.000 PM

 

 

 

  

Labels (3)
0 Karma
Get Updates on the Splunk Community!

Stay Connected: Your Guide to January Tech Talks, Office Hours, and Webinars!

What are Community Office Hours? Community Office Hours is an interactive 60-minute Zoom series where ...

[Puzzles] Solve, Learn, Repeat: Reprocessing XML into Fixed-Length Events

This challenge was first posted on Slack #puzzles channelFor a previous puzzle, I needed a set of fixed-length ...

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...