Splunk Search

Splunk date/time localization problem

marotit
Engager

Hi,

i'm facing the problem that I cannot set the time and date in Splunk in the way that it displays it in the hungarian format. The desciption of "http://localhost:8000/hu_HU/" doesn't help either. At the same time as I would have seen a hu_HU directory somewhere in the localization files.

The manuals on internet also couldn't really help how to set these formats manually.

Best regards,

Thomas Maroti

Ayn
Legend

For some discussion on this issue, have a look at the following question and its answers: http://splunk-base.splunk.com/answers/525/how-can-i-change-the-time-format-in-splunk-web

One workaround that is not discussed there but works perfectly well is to copy a working locale in $SPLUNK_HOME/lib/python2.6/site-packages/splunk/appserver/mrsparkle/locale to your own locale. In my case I needed the date format used in Sweden, which happens to be identical to what is used in the UK, so I simply copied $SPLUNK_HOME/lib/python2.6/site-packages/splunk/appserver/mrsparkle/locale/en_GB to $SPLUNK_HOME/lib/python2.6/site-packages/splunk/appserver/mrsparkle/locale/sv_SE. If I'm not mistaken Hungary uses the same time format as well, so in your case just copy the en_GB dir to hu_HU instead. Restart Splunk for the changes to take effect.

Takajian
Builder

If you want to display your localized character, you can refer to following site.

http://splunk-base.splunk.com/answers/26283/chinese-characters-in-splunk-web

However, I think splunk does not support hungarian character yet. You can ask splunk support team.
As for date/time, splunk extract system time from your splunk server.

0 Karma

kristian_kolb
Ultra Champion

I think it is rather a question of in which order days/months/years/minutes/hours etc should be presented. Sorry for not being able to help, though.

0 Karma
Get Updates on the Splunk Community!

Get Your Exclusive Splunk Certified Cybersecurity Defense Engineer at Splunk .conf24 ...

We’re excited to announce a new Splunk certification exam being released at .conf24! If you’re headed to Vegas ...

Share Your Ideas & Meet the Lantern team at .Conf! Plus All of This Month’s New ...

Splunk Lantern is Splunk’s customer success center that provides advice from Splunk experts on valuable data ...

Combine Multiline Logs into a Single Event with SOCK: a Step-by-Step Guide for ...

Combine multiline logs into a single event with SOCK - a step-by-step guide for newbies Olga Malita The ...