Different ways to search against time

Now that we have our time indexed properly, how do we search against time? The Date & Time Range picker provides a neat set of options for dealing with search times:

This picker widget is organized by:

  • Presets
  • Relative
  • Real-time
  • Data Range
  • Date & Time Range
  • Advanced

Let's take a look at each of these.

Get Implementing Splunk 7 - Third Edition now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.