Anyone having issues with nano second formatting from JSON logs. Currently it seems like times get rounded up or something.
What's sent: 2020-09-11T10:23:44.30373164-05:00
What shows: 9/11/20 10:23:44.000 AM
If you have/experienced this issue, how are you coping with or how did you solved it?
Interesting on the digit. Will keep that in mind. I also reached out to splunk support and they advise to try this in the props.conf file for the source:
%Y-%m-%dT%H:%M:%S.%9N%:z