Splunk Search

To get time range of exact range of current selected time range.

im_abhinav22
New Member

Hi All,

My requirement is to get time range of exact same length what i get from time picker. Suppose if i select range of 3 hours i.e. 3PM to 6PM . then my requirement is to get the data of 12PM to 3PM. 

what actually I am trying to do is, I have some count of events in time and for selected time span i am getting correct count but what i need is to get data of the time span of same length but  but previous time stamp and show both data span data on time chart. 

Please Help.. Thanks 

Labels (2)
0 Karma
Get Updates on the Splunk Community!

Index This | Why did the turkey cross the road?

November 2025 Edition  Hayyy Splunk Education Enthusiasts and the Eternally Curious!   We’re back with this ...

Enter the Agentic Era with Splunk AI Assistant for SPL 1.4

  🚀 Your data just got a serious AI upgrade — are you ready? Say hello to the Agentic Era with the ...

Feel the Splunk Love: Real Stories from Real Customers

Hello Splunk Community,    What’s the best part of hearing how our customers use Splunk? Easy: the positive ...