Splunk Search

To get time range of exact range of current selected time range.

im_abhinav22
New Member

Hi All,

My requirement is to get time range of exact same length what i get from time picker. Suppose if i select range of 3 hours i.e. 3PM to 6PM . then my requirement is to get the data of 12PM to 3PM. 

what actually I am trying to do is, I have some count of events in time and for selected time span i am getting correct count but what i need is to get data of the time span of same length but  but previous time stamp and show both data span data on time chart. 

Please Help.. Thanks 

Labels (2)
0 Karma
Get Updates on the Splunk Community!

Extending Observability Content to Splunk Cloud

Watch Now!   In this Extending Observability Content to Splunk Cloud Tech Talk, you'll see how to leverage ...

More Control Over Your Monitoring Costs with Archived Metrics GA in US-AWS!

What if there was a way you could keep all the metrics data you need while saving on storage costs?This is now ...

New in Observability Cloud - Explicit Bucket Histograms

Splunk introduces native support for histograms as a metric data type within Observability Cloud with Explicit ...