Hello Graylog Community,
I would like to ask for your help. I’ve been working with Graylog to monitor logs in the specific times, and I’ve come across a problem. Although I successfully created a dashboard that displays data for today from midnight to 6 am using a Time Range picker and keywords. However, I’m looking to expand this functionality to include data from previous days as well.
Specifically, I would like to create some kind of self-updating dashboard that shows the logs from multiple days, all filtered just from midnight to 6 am.
I have tried to use Search Queries but since I have been using Open Search 2.9.0 I was not able to execute query with the otherDate field. Or am I missing something?
Is there a simple way to achieve this with the picker, or should I set up a specific pipeline to accomplish this task? If any of you have experience with similar use cases or can provide insights into how I can achieve this, I’d greatly appreciate your help.
Thank you so much in advance for your assistance!