Splunk Search

Is there a way to display current time with marker in event timeline viz in splunk?

bryanttfelician
Engager

Is there a way to display current time with time marker in this dashboard in splunk?alt text

0 Karma
1 Solution

spavin
Path Finder

Hi @bryanttfeliciano,

I have just uploaded a new version of the Event Timeline Viz that lets you do exactly that!

You can download it here: https://splunkbase.splunk.com/app/4370/

Under General options you can choose: Show current time:

Options

Which shows a red line indicating the current date:

Showing the current time with a red line

Cheers,
Daniel

View solution in original post

spavin
Path Finder

Hi @bryanttfeliciano,

I have just uploaded a new version of the Event Timeline Viz that lets you do exactly that!

You can download it here: https://splunkbase.splunk.com/app/4370/

Under General options you can choose: Show current time:

Options

Which shows a red line indicating the current date:

Showing the current time with a red line

Cheers,
Daniel

wjrbrady
New Member

Is there a way to set Show Current Time in a different time zone.  I tried: 

|eval _time=relative_time(now(),"+9h+30m")


but that did not work.  any ideas or thoughts.  This app works great.

0 Karma

ianthomas
Explorer

It looks like time is displayed in this viz based on browser/computer timezone and not Splunk UI prefs.

0 Karma
Get Updates on the Splunk Community!

Enterprise Security Content Update (ESCU) | New Releases

In December, the Splunk Threat Research Team had 1 release of new security content via the Enterprise Security ...

Why am I not seeing the finding in Splunk Enterprise Security Analyst Queue?

(This is the first of a series of 2 blogs). Splunk Enterprise Security is a fantastic tool that offers robust ...

Index This | What are the 12 Days of Splunk-mas?

December 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...