<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Structure modification of message alert in Alerting</title>
    <link>https://community.splunk.com/t5/Alerting/Structure-modification-of-message-alert/m-p/181787#M3070</link>
    <description>&lt;P&gt;not in the manager. You need to open sendemail.py from splunk installed folder which is located under $SPLUN_KHOME\etc\apps\search\bin&lt;/P&gt;</description>
    <pubDate>Tue, 17 Dec 2013 21:57:14 GMT</pubDate>
    <dc:creator>tararso</dc:creator>
    <dc:date>2013-12-17T21:57:14Z</dc:date>
    <item>
      <title>Structure modification of message alert</title>
      <link>https://community.splunk.com/t5/Alerting/Structure-modification-of-message-alert/m-p/181784#M3067</link>
      <description>&lt;P&gt;Hello Splunk users,&lt;/P&gt;

&lt;P&gt;I am eager to know if there is any way to modify the message generated by alerts in terms of structure in order to make it a little bit shiny. Whenever I receive an email alert, is kind of just letters and only a simple html-like table. I want to modify the colors, table and so on.&lt;BR /&gt;
Could you please me tell where to look to, so as to modify the code there?&lt;/P&gt;

&lt;P&gt;Any suggestions are greatly appreciated!&lt;BR /&gt;
Evang&lt;/P&gt;</description>
      <pubDate>Tue, 17 Dec 2013 20:05:08 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Alerting/Structure-modification-of-message-alert/m-p/181784#M3067</guid>
      <dc:creator>evang_26</dc:creator>
      <dc:date>2013-12-17T20:05:08Z</dc:date>
    </item>
    <item>
      <title>Re: Structure modification of message alert</title>
      <link>https://community.splunk.com/t5/Alerting/Structure-modification-of-message-alert/m-p/181785#M3068</link>
      <description>&lt;P&gt;You can modify sendemail.py located under &lt;CODE&gt;$SPLUN_KHOME\etc\apps\search\bin&lt;/CODE&gt;.&lt;/P&gt;</description>
      <pubDate>Tue, 17 Dec 2013 21:41:42 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Alerting/Structure-modification-of-message-alert/m-p/181785#M3068</guid>
      <dc:creator>tararso</dc:creator>
      <dc:date>2013-12-17T21:41:42Z</dc:date>
    </item>
    <item>
      <title>Re: Structure modification of message alert</title>
      <link>https://community.splunk.com/t5/Alerting/Structure-modification-of-message-alert/m-p/181786#M3069</link>
      <description>&lt;P&gt;Hi Tararso,&lt;/P&gt;

&lt;P&gt;Thanks for your reply. I am new to Splunk, would you mind guide me through the $SPLUN_KHOMEetcappssearchbin? &lt;BR /&gt;
Is it somewhere on the manager?&lt;/P&gt;

&lt;P&gt;Thanks,&lt;BR /&gt;
Evang&lt;/P&gt;</description>
      <pubDate>Tue, 17 Dec 2013 21:53:40 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Alerting/Structure-modification-of-message-alert/m-p/181786#M3069</guid>
      <dc:creator>evang_26</dc:creator>
      <dc:date>2013-12-17T21:53:40Z</dc:date>
    </item>
    <item>
      <title>Re: Structure modification of message alert</title>
      <link>https://community.splunk.com/t5/Alerting/Structure-modification-of-message-alert/m-p/181787#M3070</link>
      <description>&lt;P&gt;not in the manager. You need to open sendemail.py from splunk installed folder which is located under $SPLUN_KHOME\etc\apps\search\bin&lt;/P&gt;</description>
      <pubDate>Tue, 17 Dec 2013 21:57:14 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Alerting/Structure-modification-of-message-alert/m-p/181787#M3070</guid>
      <dc:creator>tararso</dc:creator>
      <dc:date>2013-12-17T21:57:14Z</dc:date>
    </item>
    <item>
      <title>Re: Structure modification of message alert</title>
      <link>https://community.splunk.com/t5/Alerting/Structure-modification-of-message-alert/m-p/181788#M3071</link>
      <description>&lt;P&gt;Thanks again Tararso,&lt;/P&gt;

&lt;P&gt;I'll try to make it done and let you know.&lt;/P&gt;

&lt;P&gt;Regards,&lt;BR /&gt;
Evang&lt;/P&gt;</description>
      <pubDate>Wed, 18 Dec 2013 12:04:19 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Alerting/Structure-modification-of-message-alert/m-p/181788#M3071</guid>
      <dc:creator>evang_26</dc:creator>
      <dc:date>2013-12-18T12:04:19Z</dc:date>
    </item>
    <item>
      <title>Re: Structure modification of message alert</title>
      <link>https://community.splunk.com/t5/Alerting/Structure-modification-of-message-alert/m-p/181789#M3072</link>
      <description>&lt;P&gt;Just a reminder: sendemail.py could be overwritten by any Splunk update. So keep that in mind if you change it &lt;span class="lia-unicode-emoji" title=":winking_face:"&gt;😉&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 18 Dec 2013 12:31:45 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Alerting/Structure-modification-of-message-alert/m-p/181789#M3072</guid>
      <dc:creator>MuS</dc:creator>
      <dc:date>2013-12-18T12:31:45Z</dc:date>
    </item>
  </channel>
</rss>

