In our community group meetup Peter Krammer presented some examples of working with _time in Splunk.
We also got presented two very useful apps, which where the Config Explorer presented by Patrick Schneeweiss and the Splunk Security Essentials presented by Christoph Siess.
more