Which field is required for an event annotation?
The _time field is required for event annotations in Splunk. This field specifies the time point or range where the annotation should be applied, helping correlate annotations with the correct temporal data.
Rana
5 months agoDorthy
5 months agoSlyvia
5 months agoSanjuana
6 months agoCandra
6 months agoLucia
6 months agoCarrol
6 months agoJade
7 months agoHerminia
7 months agoBettina
7 months agoAliza
7 months agoJolene
7 months agoCarmen
8 months agoMaurine
8 months agoMaile
11 months agoGalen
10 months agoAlyce
11 months agoChandra
11 months agoViola
11 months agoLuis
11 months agoArminda
12 months agoKing
12 months agoBok
12 months agoRia
11 months agoIzetta
11 months agoFelix
12 months agoEloisa
1 year agoCherri
11 months agoThurman
11 months agoVeronica
12 months agoHubert
12 months agoArminda
1 year ago