Reporting

Schedule doesn't work propertly after version upgrade

srteclesmayer
New Member

After upgrading Splunk to 7.x.x version when i schedule a report or scheduled view it doesn't work and the schedule is always the next day.

I tried with cron schedule, once a week, etc. but i'm having always the same issue. I shchedule the search to 6:00am on Sunday for example, and it runs everyday at 6:00am. That's a big trouble and i need a solution as soon as possible.

Thank you for your time.

0 Karma

richgalloway
SplunkTrust
SplunkTrust

Please post your current cron settings and the desired run times.

---
If this reply helps you, Karma would be appreciated.
0 Karma

srteclesmayer
New Member

For example, i tried with this cron configuration:

cron_schedule -> 0 6 * * 0

And the next time is this one :

Next Scheduled Time:
2019-04-10 06:00:00 CEST

As you can see, when i setup a cron to run weekly at 6am on Sunday, it executes everyday at 6 am anyway. I tried with different configurations, another cron, configuring using the GUI, creating a new knowledge object, clone it, and i always get the same missconfiguration.

Thank you for your time and regards.

0 Karma

burwell
SplunkTrust
SplunkTrust

Hi. What exact version of Splunk are you running?

0 Karma
Get Updates on the Splunk Community!

Splunk + ThousandEyes: Correlate frontend, app, and network data to troubleshoot ...

 Are you tired of troubleshooting delays caused by siloed frontend, application, and network data? We've got a ...

Splunk Observability for AI

Don’t miss out on an exciting Tech Talk on Splunk Observability for AI!Discover how Splunk’s agentic AI ...

🔐 Trust at Every Hop: How mTLS in Splunk Enterprise 10.0 Makes Security Simpler

From Idea to Implementation: Why Splunk Built mTLS into Splunk Enterprise 10.0  mTLS wasn’t just a checkbox ...