Getting Data In

How to modify the time stamp format when i run a scheduled pdf?

ppurokit
Path Finder

I have a dashboard which has some 6 items as part of it.

I have a scheduled to email the dashboard every 24 hours.

The Dashboard name is "cpy001_daily_reports_"

When i receive the email in pdf I see that the attachment has the date appended to it as "cpy001_daily_reports_-2013-04-23.pdf"

But i have to modify the above time stamp format which is getting appended to the attachment and i want it in the following format as "_"

Please let me know how will i be able to change the time stamp format here ?

0 Karma
1 Solution

TimMc
Explorer

You could change the following line in $SPLUNK_HOME/etc/apps/search/bin/sendemail.py:

datestamp = time.strftime('%Y-%m-%d')

To something like this:

datestamp = time.strftime('%Y%m%d%H%M%S')

This solution might not be supportable going forward if sendemail.py is overwritten by a newer version of Splunk during an update.

Feature request?

See also:

Tim.

View solution in original post

TimMc
Explorer

You could change the following line in $SPLUNK_HOME/etc/apps/search/bin/sendemail.py:

datestamp = time.strftime('%Y-%m-%d')

To something like this:

datestamp = time.strftime('%Y%m%d%H%M%S')

This solution might not be supportable going forward if sendemail.py is overwritten by a newer version of Splunk during an update.

Feature request?

See also:

Tim.

Get Updates on the Splunk Community!

Introducing the Splunk Community Dashboard Challenge!

Welcome to Splunk Community Dashboard Challenge! This is your chance to showcase your skills in creating ...

Wondering How to Build Resiliency in the Cloud?

IT leaders are choosing Splunk Cloud as an ideal cloud transformation platform to drive business resilience,  ...

Updated Data Management and AWS GDI Inventory in Splunk Observability

We’re making some changes to Data Management and Infrastructure Inventory for AWS. The Data Management page, ...