Splunk Search

To get time range of exact range of current selected time range.

im_abhinav22
New Member

Hi All,

My requirement is to get time range of exact same length what i get from time picker. Suppose if i select range of 3 hours i.e. 3PM to 6PM . then my requirement is to get the data of 12PM to 3PM. 

what actually I am trying to do is, I have some count of events in time and for selected time span i am getting correct count but what i need is to get data of the time span of same length but  but previous time stamp and show both data span data on time chart. 

Please Help.. Thanks 

Labels (2)
0 Karma
Get Updates on the Splunk Community!

Index This | When is October more than just the tenth month?

October 2025 Edition  Hayyy Splunk Education Enthusiasts and the Eternally Curious!   We’re back with this ...

Observe and Secure All Apps with Splunk

  Join Us for Our Next Tech Talk: Observe and Secure All Apps with SplunkAs organizations continue to innovate ...

What’s New & Next in Splunk SOAR

 Security teams today are dealing with more alerts, more tools, and more pressure than ever.  Join us for an ...