<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Can email support two formats? in Alerting</title>
    <link>https://community.splunk.com/t5/Alerting/Can-email-support-two-formats/m-p/97044#M1393</link>
    <description>&lt;P&gt;Anything in "local" should not be overwritten, you are correct; but you run the risk of anything in your "bin" folder being overwritten during an upgrade.  Making a new app is fairly simple and I would recommend packaging all of that up within your own app.&lt;/P&gt;</description>
    <pubDate>Wed, 01 Dec 2010 22:34:02 GMT</pubDate>
    <dc:creator>Lowell</dc:creator>
    <dc:date>2010-12-01T22:34:02Z</dc:date>
    <item>
      <title>Can email support two formats?</title>
      <link>https://community.splunk.com/t5/Alerting/Can-email-support-two-formats/m-p/97041#M1390</link>
      <description>&lt;P&gt;splunk now supports email format including txt,html,raw,csv. now we wanna send email by html format and sms by raw format in the same saved-research. Can splunk support this? we wrote sms function in sendemail.py to trigger email and sms alert at the same time.Thanks&lt;/P&gt;</description>
      <pubDate>Wed, 01 Dec 2010 11:26:18 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Alerting/Can-email-support-two-formats/m-p/97041#M1390</guid>
      <dc:creator>hjwang</dc:creator>
      <dc:date>2010-12-01T11:26:18Z</dc:date>
    </item>
    <item>
      <title>Re: Can email support two formats?</title>
      <link>https://community.splunk.com/t5/Alerting/Can-email-support-two-formats/m-p/97042#M1391</link>
      <description>&lt;P&gt;email is sent just by sending the search results to the &lt;CODE&gt;sendemail.py&lt;/CODE&gt; script. You can simply make a copy and modify this script to create a new custom search command and pipe your results to that new script instead. You &lt;EM&gt;could&lt;/EM&gt; change the default one, but that is actually a bit more involved if you want to avoid your changes being overwritten on upgrades.&lt;/P&gt;</description>
      <pubDate>Wed, 01 Dec 2010 13:05:05 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Alerting/Can-email-support-two-formats/m-p/97042#M1391</guid>
      <dc:creator>gkanapathy</dc:creator>
      <dc:date>2010-12-01T13:05:05Z</dc:date>
    </item>
    <item>
      <title>Re: Can email support two formats?</title>
      <link>https://community.splunk.com/t5/Alerting/Can-email-support-two-formats/m-p/97043#M1392</link>
      <description>&lt;P&gt;That's ok. if i put commands.conf in $splunk_home/etc/apps/search/local directory, theoretically, it should be avoided changes being overwritten on updates, right?&lt;/P&gt;</description>
      <pubDate>Wed, 01 Dec 2010 14:01:47 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Alerting/Can-email-support-two-formats/m-p/97043#M1392</guid>
      <dc:creator>hjwang</dc:creator>
      <dc:date>2010-12-01T14:01:47Z</dc:date>
    </item>
    <item>
      <title>Re: Can email support two formats?</title>
      <link>https://community.splunk.com/t5/Alerting/Can-email-support-two-formats/m-p/97044#M1393</link>
      <description>&lt;P&gt;Anything in "local" should not be overwritten, you are correct; but you run the risk of anything in your "bin" folder being overwritten during an upgrade.  Making a new app is fairly simple and I would recommend packaging all of that up within your own app.&lt;/P&gt;</description>
      <pubDate>Wed, 01 Dec 2010 22:34:02 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Alerting/Can-email-support-two-formats/m-p/97044#M1393</guid>
      <dc:creator>Lowell</dc:creator>
      <dc:date>2010-12-01T22:34:02Z</dc:date>
    </item>
  </channel>
</rss>

