Hi All,
I have a splunk query returning output as:
STime
09:45
I want to convert it to hours. Expected output:
STime
9.75 hrs
How do I achieve this using splunk
This run-anywhere example should explain the process.
| makeresults
| eval STime="9:45"
| rex field=STime "(?<hrs>\d+):(?<mins>\d+)"
| eval Hours=hrs + round(mins/60,2)