Quantcast
Channel: Questions in topic: "splunk-enterprise"
Viewing all articles
Browse latest Browse all 47296

Why is Splunk not throwing an error when the time range I selected for my search is between a past and a future date?

$
0
0
I have a basic search like this: index=pqr host=xyz* NOT TYPE="*ABCDE*" | fields X, Y |timechart limit=0 span=10m count, avg(X) by Y And I search it using the date range. Today, I tried choosing a date in the past and another one into the future . I expected to be thrown an error, but the search ran without errors. Why? Today is the 3rd. The date I chose was the 4th. ![alt text][1] [1]: /storage/temp/67215-screen-shot-2015-11-03-at-40434-pm.png

Viewing all articles
Browse latest Browse all 47296

Trending Articles