Splunk AppDynamics

Manipulate datetime in Alert Template

Morelz
Builder

Hi there

Does anyone have a way to manipulate the time in an alert template. It'showing the event time in UTC time, not in the customer's time

We have SaaS Controllers which are in Europe however the customer is in a different timezone, however from AppD Support it seems we cannot update the time in the Alert.

This obviously causes confusion when the customer sees the event time is out by a couple of hours 

Surely there is a way to add/subtract hours in the template itself?

Any help is appreciated:)

Labels (3)
Tags (2)
0 Karma
1 Solution

Morelz
Builder

For anybody else looking for this, please find working code below, we are GMT+2

You can change the code to fit your needs

#set ($date = ${latestEvent.eventTime})
#set ($newDate = ${date.getHours()}+(2))
$date.setHours(${newDate})
#set( $String = ' ' ) $String.format('%1$tY-%1$tm-%1$tdT%1$tH:%1$tM:%1$tSZ', ${date})

View solution in original post

Morelz
Builder

For anybody else looking for this, please find working code below, we are GMT+2

You can change the code to fit your needs

#set ($date = ${latestEvent.eventTime})
#set ($newDate = ${date.getHours()}+(2))
$date.setHours(${newDate})
#set( $String = ' ' ) $String.format('%1$tY-%1$tm-%1$tdT%1$tH:%1$tM:%1$tSZ', ${date})

Get Updates on the Splunk Community!

Say goodbye to manually analyzing phishing and malware threats with Splunk Attack ...

In today’s evolving threat landscape, we understand you’re constantly bombarded with phishing and malware ...

AppDynamics is now part of Splunk Ideas

Hello Splunkers, We have exciting news for you! AppDynamics has been added to the Splunk Ideas Portal. Which ...

Advanced Splunk Data Management Strategies

Join us on Wednesday, May 14, 2025, at 11 AM PDT / 2 PM EDT for an exclusive Tech Talk that delves into ...