News

Example: Epoch timestamp: 1655308800 Timestamp in milliseconds: 1655308800000 Date and time (GMT): Wednesday, June 15, 2022 4:00:00 PM Date and time (your time zone): Wednesday, June 15, 2022 9:00:00 ...
1. Search for SSH Events index=main sourcetype=sshd 2. Extract Relevant Fields index=main sourcetype=sshd | eval parts=split(_raw, "\t") | eval timestamp_epoch ...