Raw timestamp strings often need to be converted to Epoch time (seconds since 1970) for math calculations.
`strptime` converts a String to an Epoch Time integer.
`strftime` converts an Epoch Time integer into a formatted String.
| eval epoch_time = strptime(log_time, "%Y-%m-%d %H:%M:%S")