Splunk Search
Highlighted

Is the result of "strptime" in seconds?

Communicator

Hi

I would like to know if the results of "strptime" are in seconds?

index=main sourcetype=access_combined  host=vsalinux06   
|eval kb=bytes/1024
| eval desired_time=strptime(req_time, "%d/%B/%Y:%I:%M:%S %z")
| table method uri desired_time

alt text

0 Karma
Highlighted

Re: Is the result of "strptime" in seconds?

Champion
Highlighted

Re: Is the result of "strptime" in seconds?

Communicator

It is a Unix timestamp

View solution in original post

0 Karma