Dashboards & Visualizations

How to Set Earliest and latest in Query

shugup2923
Path Finder

I have a query in a dashboard, which needs to be run from 15th of last month to 14th of current month, how can I set this timerange in my query so whenever it runs it takes timerange between 15th of last month to 14th of current month.

for ex-
Time Range for running the query should be (2/15/20 12:00:00.000 AM to 3/14/20 12:00:00.000 AM)

Tags (1)
0 Karma
1 Solution

gcusello
SplunkTrust
SplunkTrust

Hi @shugup2923,
Try

earliest=-mon@mon+14d+12h latest=@mon+13d+12h

Ciao.
Giuseppe

View solution in original post

0 Karma

gcusello
SplunkTrust
SplunkTrust

Hi @shugup2923,
Try

earliest=-mon@mon+14d+12h latest=@mon+13d+12h

Ciao.
Giuseppe

0 Karma

shugup2923
Path Finder

thanks , it worked. this is a good way to give time. Thanks so much.

Keep Splunking 🙂

0 Karma
Get Updates on the Splunk Community!

Webinar Recap | Revolutionizing IT Operations: The Transformative Power of AI and ML ...

The Transformative Power of AI and ML in Enhancing Observability   In the realm of IT operations, the ...

.conf24 | Registration Open!

Hello, hello! I come bearing good news: Registration for .conf24 is now open!   conf is Splunk’s rad annual ...

ICYMI - Check out the latest releases of Splunk Edge Processor

Splunk is pleased to announce the latest enhancements to Splunk Edge Processor.  HEC Receiver authorization ...