Getting Data In

_time different format???

kailun92
Communicator

I have two computer running the same code and I have a set of date but all is in the format of

alt text

How can I set the time to become like this

alt text

Can someone guide me with this ?

Tags (2)
0 Karma
1 Solution

linu1988
Champion

Hello Kailun,
from your case i can tell your time is appropriately recognized from the events. You just need to re-format it.

Please follow the "Reconfigure how timestamps appear in raw data" part in the below documentation:

http://docs.splunk.com/Documentation/Splunk/5.0.4/Data/Configuretimestamprecognition

View solution in original post

linu1988
Champion

Hello Kailun,
from your case i can tell your time is appropriately recognized from the events. You just need to re-format it.

Please follow the "Reconfigure how timestamps appear in raw data" part in the below documentation:

http://docs.splunk.com/Documentation/Splunk/5.0.4/Data/Configuretimestamprecognition

gooza
Communicator
Get Updates on the Splunk Community!

CX Day is Coming!

Customer Experience (CX) Day is on October 7th!! We're so excited to bring back another day full of wonderful ...

Strengthen Your Future: A Look Back at Splunk 10 Innovations and .conf25 Highlights!

The Big One: Splunk 10 is Here!  The moment many of you have been waiting for has arrived! We are thrilled to ...

Now Offering the AI Assistant Usage Dashboard in Cloud Monitoring Console

Today, we’re excited to announce the release of a brand new AI assistant usage dashboard in Cloud Monitoring ...