Quantcast
Channel: Questions in topic: "splunk-enterprise"
Viewing all articles
Browse latest Browse all 47296

Converting Time from an InputLookup

$
0
0
Hi, I need help converting the time provided by a lookup. I am getting the information like this: | inputlookup AD_User_LDAP_list | search cn=jon1 | fields cn, pwdLastSet cn pwdLastSet jon1 06:25.09 AM, Mon 07/15/2019 I tried running | eval start=strftime(pwdLastSet, %Y/%m%d) but nothing has changed, I was getting the same results. Basically, I am trying to find out when a user password will expire, based on the time it was last set.

Viewing all articles
Browse latest Browse all 47296

Trending Articles