Which field is required for an event annotation?
The _time field is required for event annotations in Splunk. This field specifies the time point or range where the annotation should be applied, helping correlate annotations with the correct temporal data.
Rana
4 months agoDorthy
4 months agoSlyvia
4 months agoSanjuana
4 months agoCandra
4 months agoLucia
5 months agoCarrol
5 months agoJade
5 months agoHerminia
5 months agoBettina
5 months agoAliza
6 months agoJolene
6 months agoCarmen
6 months agoMaurine
6 months agoMaile
10 months agoGalen
9 months agoAlyce
9 months agoChandra
9 months agoViola
10 months agoLuis
10 months agoArminda
10 months agoKing
10 months agoBok
10 months agoRia
10 months agoIzetta
10 months agoFelix
10 months agoEloisa
11 months agoCherri
9 months agoThurman
10 months agoVeronica
10 months agoHubert
10 months agoArminda
11 months ago