Splunk Search

How to set default for search time picker in Splunk Cloud

edgarrity
Path Finder
Does anyone know how to change the default time for ad-hoc searches from 30 minutes to 7 days in Splunk Cloud? I changed the setting in Server settings » Search preferences to 7 days. However, the default in Search & Reporting is still 30 minutes. Our data usually takes 48 hours to get though the data pipeline, so a 30 minute time window for searches will never return data.
0 Karma
Get Updates on the Splunk Community!

Almost Too Eventful Assurance: Part 1

Modern IT and Network teams still struggle with too many alerts and isolating issues before they are notified. ...

Demo Day: Strengthen Your SOC with Splunk Enterprise Security 8.1

Today’s threat landscape is more complex than ever. Security operation centers (SOCs) are overwhelmed with ...

Dashboards: Hiding charts while search is being executed and other uses for tokens

There are a couple of features of SimpleXML / Classic dashboards that can be used to enhance the user ...