Dashboards & Visualizations

How to add IST and PST time as text field on Splunk dashboard?

Abhineet
Loves-to-Learn Everything

Want to add two text field in splunk xml dashboard i.e("IST" and "PST").

These text field should contain current IST date Time and Current PST date time respectively.

Dashboard Look alike as mentioned below.

 

Abhineet_0-1670332890619.png

 

Labels (1)
Tags (1)
0 Karma

richgalloway
SplunkTrust
SplunkTrust

Splunk stores timestamps as UTC internally and converts them to the user's selected time zone when displayed.  No provision is made for a dashboard to display times in a specific time zone.

You could use the relative_time function to subtract hours from IST to make it look like PST, but this would need to be updated every time either IST or PST started or ended Summer Time.

---
If this reply helps you, Karma would be appreciated.
0 Karma

Abhineet
Loves-to-Learn Everything

is there any way to changes in xml source file and can show text field value as current IST and PST   date time?

0 Karma
Get Updates on the Splunk Community!

Join Us at the Builder Bar at .conf24 – Empowering Innovation and Collaboration

What is the Builder Bar? The Builder Bar is more than just a place; it's a hub of creativity, collaboration, ...

Combine Multiline Logs into a Single Event with SOCK - a Guide for Advanced Users

This article is the continuation of the “Combine multiline logs into a single event with SOCK - a step-by-step ...

Everything Community at .conf24!

You may have seen mention of the .conf Community Zone 'round these parts and found yourself wondering what ...