Hi,
I have a logfile with a timestamp, but no date, being processed by a universal forwarder. How should I handle this?
information on how Splunk assigns timestamps may be found here: http://docs.splunk.com/Documentation/Splunk/latest/Data/HowSplunkextractstimestamps