<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Getting link to the Splunk ITSI event/episode in Splunk ITSI</title>
    <link>https://community.splunk.com/t5/Splunk-ITSI/Getting-link-to-the-Splunk-ITSI-event-episode/m-p/750601#M3068</link>
    <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I am trying to form a custom link to the episode/event in the email alert triggered from SPlunk ITSI.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;However, when I open the link to that event or episode directly it always opens the alert and episode link and you the have to again search for the events and check the details.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Is there a way to get the link to the episode directly taht a person can open without searching from the ist of the events?&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;the link to specific episode e.g. &lt;A href="https://splunkcloud.com/en-US/app/itsi/itsi_event_management?tab=layout_1&amp;amp;emid=1sdfdff-3cd3-11f0-b7a7-44561c0a81024&amp;amp;earliest=%40d&amp;amp;latest=now&amp;amp;tabid=all-events" target="_blank" rel="noopener"&gt;https://splunkcloud.com/en-US/app/itsi/itsi_event_management?tab=layout_1&amp;amp;emid=1sdfdff-3cd3-11f0-b7a7-44561c0a81024&amp;amp;earliest=%40d&amp;amp;latest=now&amp;amp;tabid=all-events&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;when opened in separate window does not open that specific episode&lt;BR /&gt;&lt;BR /&gt;the above url is modified to not share the exact url for the episode.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Tue, 29 Jul 2025 00:01:45 GMT</pubDate>
    <dc:creator>abhi04</dc:creator>
    <dc:date>2025-07-29T00:01:45Z</dc:date>
    <item>
      <title>Getting link to the Splunk ITSI event/episode</title>
      <link>https://community.splunk.com/t5/Splunk-ITSI/Getting-link-to-the-Splunk-ITSI-event-episode/m-p/750601#M3068</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I am trying to form a custom link to the episode/event in the email alert triggered from SPlunk ITSI.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;However, when I open the link to that event or episode directly it always opens the alert and episode link and you the have to again search for the events and check the details.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Is there a way to get the link to the episode directly taht a person can open without searching from the ist of the events?&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;the link to specific episode e.g. &lt;A href="https://splunkcloud.com/en-US/app/itsi/itsi_event_management?tab=layout_1&amp;amp;emid=1sdfdff-3cd3-11f0-b7a7-44561c0a81024&amp;amp;earliest=%40d&amp;amp;latest=now&amp;amp;tabid=all-events" target="_blank" rel="noopener"&gt;https://splunkcloud.com/en-US/app/itsi/itsi_event_management?tab=layout_1&amp;amp;emid=1sdfdff-3cd3-11f0-b7a7-44561c0a81024&amp;amp;earliest=%40d&amp;amp;latest=now&amp;amp;tabid=all-events&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;when opened in separate window does not open that specific episode&lt;BR /&gt;&lt;BR /&gt;the above url is modified to not share the exact url for the episode.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 29 Jul 2025 00:01:45 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-ITSI/Getting-link-to-the-Splunk-ITSI-event-episode/m-p/750601#M3068</guid>
      <dc:creator>abhi04</dc:creator>
      <dc:date>2025-07-29T00:01:45Z</dc:date>
    </item>
    <item>
      <title>Re: Getting link to the Splunk ITSI event/episode</title>
      <link>https://community.splunk.com/t5/Splunk-ITSI/Getting-link-to-the-Splunk-ITSI-event-episode/m-p/753437#M3092</link>
      <description>&lt;P&gt;That's quite easy. Every Episode has an ID, so you can build a link like &lt;A href="https://yoursplunkinstance/en-US/app/itsi/itsi_event_management?episodeid=abc25865-33b3-484b-bd45-5dd2ff254be7" target="_blank"&gt;https://yoursplunkinstance/en-US/app/itsi/itsi_event_management?episodeid=abc25865-33b3-484b-bd45-5dd2ff254be7&lt;/A&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 22 Sep 2025 13:49:36 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-ITSI/Getting-link-to-the-Splunk-ITSI-event-episode/m-p/753437#M3092</guid>
      <dc:creator>skramp</dc:creator>
      <dc:date>2025-09-22T13:49:36Z</dc:date>
    </item>
    <item>
      <title>Re: Getting link to the Splunk ITSI event/episode</title>
      <link>https://community.splunk.com/t5/Splunk-ITSI/Getting-link-to-the-Splunk-ITSI-event-episode/m-p/754124#M3107</link>
      <description>&lt;P&gt;To extend&amp;nbsp;&lt;SPAN&gt;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/41444"&gt;@skramp&lt;/a&gt;&amp;nbsp;answer.&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;episodeid in the episode review url references the episode id that is stored as itsi_group_id in the itsi_grouped_alerts index.&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;Below its an example of the Episode Review&amp;nbsp; link I would pass in an email from an alert rule in the NEAP&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;&lt;A href="https://itsi" target="_blank"&gt;https://itsi&lt;/A&gt;.&amp;lt;stack_name&amp;gt;.splunkcloud.com/en-GB/app/itsi/itsi_event_management?earliest=$result.itsi_first_event_time$&amp;amp;latest=$result.itsi_last_event_time$&amp;amp;episodeid=$result.itsi_group_id$&amp;amp;showsummarydashboard=false&lt;BR /&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;/Seb&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 09 Oct 2025 12:04:13 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-ITSI/Getting-link-to-the-Splunk-ITSI-event-episode/m-p/754124#M3107</guid>
      <dc:creator>srauhala_splunk</dc:creator>
      <dc:date>2025-10-09T12:04:13Z</dc:date>
    </item>
  </channel>
</rss>

