Splunk Search

Time Format Help

AzmathShaik
Path Finder

Hello 

i have log events with time format "2020-08-13 15:50:20 UTC+0000" and i have defined 
TIME_FORMAT as %Y-%m-%d %H:%M:%S %Z

but still seeing Failed to parse timestamp warnings. can someone correct where am doing mistake? 

Labels (1)
Tags (1)
0 Karma
1 Solution

gcusello
SplunkTrust
SplunkTrust

Hi @AzmathShaik,

try this please:

%Y-%m-%d %H:%M:%S %Z%z

Ciao.

Giuseppe

View solution in original post

0 Karma

gcusello
SplunkTrust
SplunkTrust

Hi @AzmathShaik,

try this please:

%Y-%m-%d %H:%M:%S %Z%z

Ciao.

Giuseppe

0 Karma

gcusello
SplunkTrust
SplunkTrust

Hi @AzmathShaik,

good for you,

Ciao and happy splunking.

Giuseppe

P.S. Karma Points are appreciated 😉

0 Karma
Get Updates on the Splunk Community!

Routing logs with Splunk OTel Collector for Kubernetes

The Splunk Distribution of the OpenTelemetry (OTel) Collector is a product that provides a way to ingest ...

Welcome to the Splunk Community!

(view in My Videos) We're so glad you're here! The Splunk Community is place to connect, learn, give back, and ...

Tech Talk | Elevating Digital Service Excellence: The Synergy of Splunk RUM & APM

Elevating Digital Service Excellence: The Synergy of Real User Monitoring and Application Performance ...