Which field is required for an event annotation?
The _time field is required for event annotations in Splunk. This field specifies the time point or range where the annotation should be applied, helping correlate annotations with the correct temporal data.
Rana
2 months agoDorthy
2 months agoSlyvia
2 months agoSanjuana
3 months agoCandra
3 months agoLucia
3 months agoCarrol
3 months agoJade
4 months agoHerminia
4 months agoBettina
4 months agoAliza
4 months agoJolene
4 months agoCarmen
5 months agoMaurine
5 months agoMaile
8 months agoGalen
7 months agoAlyce
8 months agoChandra
8 months agoViola
8 months agoLuis
8 months agoArminda
9 months agoKing
9 months agoBok
9 months agoRia
8 months agoIzetta
8 months agoFelix
9 months agoEloisa
9 months agoCherri
8 months agoThurman
8 months agoVeronica
9 months agoHubert
9 months agoArminda
10 months ago