Splunk Search

DBQuery and epoch

ericrobinson
Path Finder

I am creating a dashboard form that is driven off of a text box, and a drop-down. I am trying to dynamically populate the dropdown with the valid date choices for reporting as stored in the DB. The problem is the date is a string in the DB I am querying (20,120,331). NO problem I thought.. I will use the TO_DATE oracle function. Now, the date is showing in Epoch in splunk UI (1333166400). Anyone have any idea on how to make this display correctly?

--I already tried convert - convert timeformat="%H:%M:%S" ctime(time)--

Tags (2)
0 Karma

ericrobinson
Path Finder

User error.. I wasnt displaying the formatted field correctly.

0 Karma
Get Updates on the Splunk Community!

Splunk Mobile: Your Brand-New Home Screen

Meet Your New Mobile Hub  Hello Splunk Community!  Staying connected to your data—no matter where you are—is ...

Introducing Value Insights (Beta): Understand the Business Impact your organization ...

Real progress on your strategic priorities starts with knowing the business outcomes your teams are delivering ...

Enterprise Security (ES) Essentials 8.3 is Now GA — Smarter Detections, Faster ...

As of today, Enterprise Security (ES) Essentials 8.3 is now generally available, helping SOC teams simplify ...