Splunk Search

Changing AM/PM to 24 hours in search timeline

bojanz
Communicator

Hi all,

Is it possible to change the display of Flashtimeline (for example, the one used in the "search" app) to display time in 24 hours instead of AM/PM?

If yes, are those per-user settings or system settings?

Is it possible to change this in the frame where the results are displayed too (next to the drop down icon for building event types and extracting fields)?

Thanks.

Tags (1)
1 Solution

ftk
Motivator

Simply use the british locale. Instead of logging on to http://servername:8000/en-US/account/login log on to http://servername:8000/en-GB/account/login and all times will be in 24 hour format.

[edit: answer comment]

The locale of splunk is determined by the browser locale, see http://www.splunk.com/base/Documentation/4.1.4/admin/Userlanguageandlocale for more information.

Basically you have two options:

  1. Distribute a login URL to your users with the en-GB locale in the URL
  2. Change the user's browser locale to en-GB.

View solution in original post

ftk
Motivator

I have updated my answer to reply to the question posted in your comment.

0 Karma

ftk
Motivator

Simply use the british locale. Instead of logging on to http://servername:8000/en-US/account/login log on to http://servername:8000/en-GB/account/login and all times will be in 24 hour format.

[edit: answer comment]

The locale of splunk is determined by the browser locale, see http://www.splunk.com/base/Documentation/4.1.4/admin/Userlanguageandlocale for more information.

Basically you have two options:

  1. Distribute a login URL to your users with the en-GB locale in the URL
  2. Change the user's browser locale to en-GB.

bojanz
Communicator

Thanks this works 🙂 - just one more question, is there a way to set this as the default on the server? So that it doesn't care what locale the user's browser sends?

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Matching cron expressions

This puzzle (first published here) is based on matching timestamps to cron expressions.All the timestamps ...

Design, Compete, Win: Submit Your Best Splunk Dashboards for a .conf26 Pass

Hello Splunkers,  We’re excited to kick off a Splunk Dashboard contest! We know that dashboards are a primary ...

May 2026 Splunk Expert Sessions: Security & Observability

Level Up Your Operations: May 2026 Splunk Expert Sessions Whether you are refining your security posture or ...