Reporting

When a report is scheduled for a specific time using cron; Does the report run from the System timezone, or the user timezone?

mcrawford44
Communicator

When a report is scheduled for a specific time using cron; Does the report run from the System timezone, or the user timezone?

For example;

User from EST schedules a report to run via cron at 9pm.

Server time is PST.

When does the report run?

Tags (2)

TStrauch
Communicator

Hi mcrawford,

Known issue in Splunk 6.2:

2014-12-01 SPL-92736 Scheduler ignores user/owner user_pref time zone setting for cron scheduled searches, runs cron scheduled search in relation to system time.

Resolved with this:

2015-04-15 SPL-92736 The scheduler uses the server timezone (GMT) to run scheduled searches, instead of the user timezone preferences, impact the alerts, reports, and summary indexing.

Means until today the cron based scheduler takes the System Time Zone to schedule the Report.

Have a nice day 😉

somesoni2
Revered Legend

Server time zone

0 Karma
Get Updates on the Splunk Community!

Splunk Observability for AI

Don’t miss out on an exciting Tech Talk on Splunk Observability for AI!Discover how Splunk’s agentic AI ...

Splunk Enterprise Security 8.x: The Essential Upgrade for Threat Detection, ...

Watch On Demand the Tech Talk on November 6 at 11AM PT, and empower your SOC to reach new heights! Duration: ...

Splunk Observability as Code: From Zero to Dashboard

For the details on what Self-Service Observability and Observability as Code is, we have some awesome content ...