Loading...
Skip to content
Warren Myers' Merikebi My online archive
  • RSS
  • Facebook
  • Instagram
  • Pinterest
  • Twitter
  • LinkedIn
  • GitHub
  • Telegram
  • Skype

Pages

  • Welcome to Warren Myers’ Merikebi
  • Pocket

Answer by warren for How do I use a specific date/time in Splunk dashboard with earliest and latest?

Posted on 22 November 2023

Pages

  • Welcome to Warren Myers’ Merikebi

You can use a time picker, and then select from it the earliest and latest in your search

Say you name your time picker timetok

The search would look like this:

index=ndx sourcetype=srctp earliest=$timetok.earliest$ latest=$timetok.latest$ ...

from User warren – Stack Overflow https://stackoverflow.com/questions/77497243/how-do-i-use-a-specific-date-time-in-splunk-dashboard-with-earliest-and-latest/77532620#77532620
via IFTTT

merikebi

warrenmyers.com
Taggedstackexchange
by merikebiCategories:blih
  • RSS
  • Skype
© Warren Myers' Merikebi. All rights reserved.
Back to top