Splunk Enterprise

Eventgen: How to create a frequency based on timestamp?

AlizéGui
Explorer

Hello ! 

I would like to generate a drop down of data during a specfic hour. Let's say 2pm here is my eventgen.conf : 

## Example replace {"pointName": "nb", "value": "25.33"}
token.1.token = "pointName":\s"nb".{1,60}"value":\s"(.{1,10})"}
token.1.replacementType = random
token.1.replacement = integer[5:30]

And I would like at 2pm that the number it's change like this : 

token.1.token = "pointName":\s"nb".{1,60}"value":\s"(.{1,10})"}
token.1.replacementType = random
token.1.replacement = integer[0:4]

Does anybody know how to create a fluctuation for a specific time on a eventgen.conf ? 

Labels (1)
Tags (1)
0 Karma
Get Updates on the Splunk Community!

Splunk Observability for AI

Don’t miss out on an exciting Tech Talk on Splunk Observability for AI!Discover how Splunk’s agentic AI ...

Splunk Enterprise Security 8.x: The Essential Upgrade for Threat Detection, ...

Watch On Demand the Tech Talk on November 6 at 11AM PT, and empower your SOC to reach new heights! Duration: ...

Splunk Observability as Code: From Zero to Dashboard

For the details on what Self-Service Observability and Observability as Code is, we have some awesome content ...