Splunk Search

how to change time in summary index i want _time not which is having in data i have used eval _time (now ) but it is not working its same showing event date not _ time

abhishekdubey00
Engager

Now
6/1/19
12:31:03.763 AM
2019-06-01 00:31:03.763,

wanted
6/1/19
12:31:03.763 AM
2019-06-01 00:31:03.763

Tags (2)
0 Karma

abhishekdubey00
Engager

wanted
6/6/19
8:17:50.000 AM

2019-06-01 00:31:03.763

now
6/1/19
12:31:03.763 AM
2019-06-01 00:31:03.763

0 Karma
Get Updates on the Splunk Community!

Your Guide to Splunk Digital Experience Monitoring

A flawless digital experience isn't just an advantage, it's key to customer loyalty and business success. But ...

Data Management Digest – November 2025

  Welcome to the inaugural edition of Data Management Digest! As your trusted partner in data innovation, the ...

Upcoming Webinar: Unmasking Insider Threats with Slunk Enterprise Security’s UEBA

Join us on Wed, Dec 10. at 10AM PST / 1PM EST for a live webinar and demo with Splunk experts! Discover how ...