...atest$ into the form and get the epoch back. I want to get a human readable dateformat so the user can see what the date range is for each panel.
Any assistance would be appreciated.
...poch time so I can perform some date calculations.
So I've been looking at the Splunk documentation here and I thought I'd understood the variables I need to use and then convert and I put together t...
...efault|OK|0|100
The first field is the timestamp, that only has the hour:minute:second:milisecond (no date). Then, separated by the "|" character, the rest of the fields. These fields are d...
I'm dealing with bash_history files in the following format. I would like to extract the timestamp and use that as the event timestamp, but I'm having some issues doing so.
#1579207583
whoami
#1...
I have a single dataset which contains a couple of variables which are time (date) based. The format for all of them is the same.
I am interested in having a count of two different date types....
...hould give me (11/14/17 7:40:00.000 AM), but Splunk just won't recognize the 3 digit format.
I've tried every combination of Date\Timeformatvariables I can think of and even made an attempt at a c...
I have a form that allows the user to input a text token. The idea is the user will input dateandtime information. I then would like to have a search on the form run starting 10 minutes before t...
...ent:
2018-02-08T10:09:02.000+13:00
How can I format this time/date to be as follows YYYY-MM e.g. 2018-02?
Or one step further would be to do current month minus 1 month e.g. 2018-01?
I was t...
...ther variables in the file name (if you config WebKnight to do this).
d) Splunk imports the quote lines as one multiple event.
e) The dateandtime information is in two separate fields that c...