At index time, in which field does Splunk store the timestamp value?

At index time, in which field does Splunk store the timestamp value?
A . time
B . _time
C . EventTime
D . timestamp

Answer: B

Explanation:

Reference: https://docs.splunk.com/Documentation/Splunk/7.2.6/Data/HowSplunkextractstimestamps

Subscribe
Notify of
guest
0 Comments
Inline Feedbacks
View all comments