Splunk Search

To get time range of exact range of current selected time range.

im_abhinav22
New Member

Hi All,

My requirement is to get time range of exact same length what i get from time picker. Suppose if i select range of 3 hours i.e. 3PM to 6PM . then my requirement is to get the data of 12PM to 3PM. 

what actually I am trying to do is, I have some count of events in time and for selected time span i am getting correct count but what i need is to get data of the time span of same length but  but previous time stamp and show both data span data on time chart. 

Please Help.. Thanks 

Labels (2)
0 Karma
Get Updates on the Splunk Community!

.conf24 | Registration Open!

Hello, hello! I come bearing good news: Registration for .conf24 is now open!   conf is Splunk’s rad annual ...

ICYMI - Check out the latest releases of Splunk Edge Processor

Splunk is pleased to announce the latest enhancements to Splunk Edge Processor.  HEC Receiver authorization ...

Introducing the 2024 SplunkTrust!

Hello, Splunk Community! We are beyond thrilled to announce our newest group of SplunkTrust members!  The ...