ASP parses most standard time formats, but you can add custom time formats so that they sync with the time formats of ASP logs.
On the dashboard, click the Policy Editor icon
.In the Rule Types pane, select the receiver, then click Advanced Syslog Parser.
Select a rule, then click → .
Select the Mapping tab, then click the plus icon above the Time Format table.
Click in the Time Format field, then select the time format.
Select the time fields that you want to use this format.
Note
First Time and Last Time see the first and last time the event is generated. Added Custom Type time fields also appear.
Click OK, then complete the remaining information.