After upgrading Splunk to 7.x.x version when i schedule a report or scheduled view it doesn't work and the schedule is always the next day.
I tried with cron schedule, once a week, etc. but i'm having always the same issue. I shchedule the search to 6:00am on Sunday for example, and it runs everyday at 6:00am. That's a big trouble and i need a solution as soon as possible.
Thank you for your time.
Please post your current cron settings and the desired run times.
For example, i tried with this cron configuration:
cron_schedule -> 0 6 * * 0
And the next time is this one :
Next Scheduled Time:
2019-04-10 06:00:00 CEST
As you can see, when i setup a cron to run weekly at 6am on Sunday, it executes everyday at 6 am anyway. I tried with different configurations, another cron, configuring using the GUI, creating a new knowledge object, clone it, and i always get the same missconfiguration.
Thank you for your time and regards.
Hi. What exact version of Splunk are you running?