Knowledge Management

Cron Schedule question

jacqu3sy
Path Finder

What Cron could I use to schedule a search to only run between the hours of 18:00 through until 08:00 the next day?

I'm not sure it's possible.

The idea is that a search should only run Out Of Hours, whereby an email notification will be sent to get someone out of bed, should a poisitive reuslt be found off the search.

Any ideas?

Tags (1)
0 Karma
1 Solution

gcusello
SplunkTrust
SplunkTrust

Hi jacqu3sy,
try

0 0,1,2,3,4,5,6,7,8,18,19,20,21,22,23 * * *

Bye.
Giuseppe

View solution in original post

rbreton
Path Finder

This might be easier to read...

  • 0 18-7 * * *
0 Karma

gcusello
SplunkTrust
SplunkTrust

Hi jacqu3sy,
try

0 0,1,2,3,4,5,6,7,8,18,19,20,21,22,23 * * *

Bye.
Giuseppe

jacqu3sy
Path Finder

yeah that works thanks.

0 Karma

davebrooking
Contributor

Hopefully this will give you some ideas on how to do that

Dave

0 Karma
Get Updates on the Splunk Community!

App Platform's 2025 Year in Review: A Year of Innovation, Growth, and Community

As we step into 2026, it’s the perfect moment to reflect on what an extraordinary year 2025 was for the Splunk ...

Operationalizing Entity Risk Score with Enterprise Security 8.3+

Overview Enterprise Security 8.3 introduces a powerful new feature called “Entity Risk Scoring” (ERS) for ...

Unlock Database Monitoring with Splunk Observability Cloud

  In today’s fast-paced digital landscape, even minor database slowdowns can disrupt user experiences and ...