Splunk Search

Splunk Query of Date and Time condition

splunk_venkat
New Member

Hi,

I am working on a splunk query to pull the records from daily basis depends on timinging.

For example 30m and 60m, for those I have confirmed the _time and relative time conditions to pull the transactions between this timeframe.

Now we have a requirement to pull the records as below,
30 mins <60 mins on Sat&Sun> for rest of the day

How could I achieve this requirment from splunk. Please suggest.

Thanks
Venkatesh.

0 Karma
Get Updates on the Splunk Community!

From Alert to Resolution: How Splunk Observability Helps SREs Navigate Critical ...

It's 3:17 AM, and your phone buzzes with an urgent alert. Wire transfer processing times have spiked, and ...

ATTENTION!! We’re MOVING (not really)

Hey, all! In an effort to keep this Slack workspace secure and also to make our new members' experience easy, ...

Splunk Admins: Build a Smarter Stack with These Must-See .conf25 Sessions

  Whether you're running a complex Splunk deployment or just getting your bearings as a new admin, .conf25 ...