I have a scenario where in the splunk servers(Search Heads & Indexers) the server time is set as UTC
But when a user in Americas is using splunk (EST/CST) the date time picker in splunk search should pick logs according to EST timezone and not in UTC timezone.
What i mean is if a user in EST TZ selects "Last 24 hours" - he should see the logs of last 24 hours wrt to EST TZ and if a user in GMT TZ selects "Last 24 hours" - he should see the logs of last 24 hours wrt to GMT TZ
Can anyone help me with this?
Thanks
Aditya
Hi adityapavan18,
set the user's TZ according to the docs http://docs.splunk.com/Documentation/Splunk/6.2.1/Security/ConfigureuserswithSplunkWeb this should resolve this problem.
cheers, MuS
Hi adityapavan18,
set the user's TZ according to the docs http://docs.splunk.com/Documentation/Splunk/6.2.1/Security/ConfigureuserswithSplunkWeb this should resolve this problem.
cheers, MuS