<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Email in Alerting</title>
    <link>https://community.splunk.com/t5/Alerting/Email/m-p/544770#M10344</link>
    <description>&lt;P&gt;may i know how exactly i search for email login attempts and sent to splunk tool?&lt;/P&gt;</description>
    <pubDate>Mon, 22 Mar 2021 13:14:46 GMT</pubDate>
    <dc:creator>isin67</dc:creator>
    <dc:date>2021-03-22T13:14:46Z</dc:date>
    <item>
      <title>Email</title>
      <link>https://community.splunk.com/t5/Alerting/Email/m-p/544598#M10332</link>
      <description>&lt;P&gt;I like to make alert when ever i am opening my email weather i give correct password or the wrong password no matter what is it possible using splunk tool ?&lt;/P&gt;</description>
      <pubDate>Sat, 20 Mar 2021 04:31:20 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Alerting/Email/m-p/544598#M10332</guid>
      <dc:creator>isin67</dc:creator>
      <dc:date>2021-03-20T04:31:20Z</dc:date>
    </item>
    <item>
      <title>Re: Email</title>
      <link>https://community.splunk.com/t5/Alerting/Email/m-p/544612#M10335</link>
      <description>&lt;P&gt;If your email server logs successful and failed login attempts AND those logs are sent to Splunk then, yes, it is possible to make an alert for that.&lt;/P&gt;&lt;P&gt;Create a search for your email login attempts.&amp;nbsp; When you have the desired results, click the Save As link and choose Alert.&lt;/P&gt;</description>
      <pubDate>Sat, 20 Mar 2021 12:33:44 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Alerting/Email/m-p/544612#M10335</guid>
      <dc:creator>richgalloway</dc:creator>
      <dc:date>2021-03-20T12:33:44Z</dc:date>
    </item>
    <item>
      <title>Re: Email</title>
      <link>https://community.splunk.com/t5/Alerting/Email/m-p/544770#M10344</link>
      <description>&lt;P&gt;may i know how exactly i search for email login attempts and sent to splunk tool?&lt;/P&gt;</description>
      <pubDate>Mon, 22 Mar 2021 13:14:46 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Alerting/Email/m-p/544770#M10344</guid>
      <dc:creator>isin67</dc:creator>
      <dc:date>2021-03-22T13:14:46Z</dc:date>
    </item>
    <item>
      <title>Re: Email</title>
      <link>https://community.splunk.com/t5/Alerting/Email/m-p/544788#M10348</link>
      <description>&lt;P&gt;Exactly?&amp;nbsp; No, I can't tell you exactly how to search because there are too many unknowns (like index names, sourcetype, user names, etc.).&amp;nbsp; Someone at your company should know where the data resides in Splunk so you can find it.&lt;/P&gt;&lt;P&gt;Also see&amp;nbsp;&lt;A href="https://docs.splunk.com/Documentation/Splunk/8.1.3/Search/GetstartedwithSearch" target="_blank"&gt;https://docs.splunk.com/Documentation/Splunk/8.1.3/Search/GetstartedwithSearch &lt;/A&gt;and&amp;nbsp;&lt;A href="https://www.splunk.com/en_us/training/free-courses/splunk-fundamentals-1.html" target="_blank"&gt;https://www.splunk.com/en_us/training/free-courses/splunk-fundamentals-1.html&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 22 Mar 2021 14:45:29 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Alerting/Email/m-p/544788#M10348</guid>
      <dc:creator>richgalloway</dc:creator>
      <dc:date>2021-03-22T14:45:29Z</dc:date>
    </item>
  </channel>
</rss>

