Time Stamps in Logger

Events consist of a receipt time, event time, a source (host name or IP address), and an un-parsed message portion. The following are the most common time stamps in Logger events:

Note: Typically, the Logger receipt time is same as the event time. However, these times might differ due to a small lag between the time an event is received and when it is stored on the Logger. For example, if the event time parsing is enabled in file receiver, the receipt time may lag behind event time.

You may see several other time stamps in Logger events like the following:

Concept Link IconSee Also