Splunk Search

Setting Custom/Default Time in Splunk Search/Dashboard

eraasch
New Member

As the title suggests I am attempting to set a custom and default for a splunk dashboard that I created. When it opens I need it to snap to the previous weekday between 16:26 and 16:42 CST. Does anyone know how I would go about doing this?

Labels (1)
0 Karma

VatsalJagani
SplunkTrust
SplunkTrust

Use default earliest=-w@w+1d and default latest=@w5+1d

(Use advanced section if you are selecting from timerange picker UI.)

VatsalJagani_0-1640507460750.png

Then use this filter in the SPL search query

where date_hour=16 AND date_minute>=26 AND date_minute<=42
0 Karma
Get Updates on the Splunk Community!

Application management with Targeted Application Install for Victoria Experience

  Experience a new era of flexibility in managing your Splunk Cloud Platform apps! With Targeted Application ...

Index This | What goes up and never comes down?

January 2026 Edition  Hayyy Splunk Education Enthusiasts and the Eternally Curious!   We’re back with this ...

Splunkers, Pack Your Bags: Why Cisco Live EMEA is Your Next Big Destination

The Power of Two: Splunk &#43; Cisco at "Ludicrous Scale"   You know Splunk. You know Cisco. But have you seen ...