<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Create a dashboard when an alert is triggered? in Dashboards &amp; Visualizations</title>
    <link>https://community.splunk.com/t5/Dashboards-Visualizations/Create-a-dashboard-when-an-alert-is-triggered/m-p/550209#M37980</link>
    <description>&lt;P&gt;Can you explain more detailedly about the tokens?&amp;nbsp;&lt;/P&gt;&lt;P&gt;Yes the alert is based on scheduled search and only alert when a condition is met (result&amp;gt;0). How do I automate this token and activate the dashboard?&lt;/P&gt;</description>
    <pubDate>Mon, 03 May 2021 09:36:44 GMT</pubDate>
    <dc:creator>simomo</dc:creator>
    <dc:date>2021-05-03T09:36:44Z</dc:date>
    <item>
      <title>Create a dashboard when an alert is triggered?</title>
      <link>https://community.splunk.com/t5/Dashboards-Visualizations/Create-a-dashboard-when-an-alert-is-triggered/m-p/550188#M37975</link>
      <description>&lt;P&gt;Use case: detect outliers&amp;nbsp;&lt;/P&gt;&lt;P&gt;Alert is triggered when an outlier is detected. For now I can send an email containing some information from this trigger.&amp;nbsp;&lt;/P&gt;&lt;P&gt;How I want to do a dashboard including the past data and detected outlier when this outlier is found.&lt;/P&gt;&lt;P&gt;I am not sure of the workflow. There is no option of dashboard when sending the alert through email.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Does it means that I have to save the alert result into an lookup file and schedule another dashboarding?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The dashboard itself can only be scheduled in terms of time. I can do it and then use where to find if there is an outlier. If yes, there is no way to send an alert.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;How should I do it?&lt;/P&gt;</description>
      <pubDate>Mon, 03 May 2021 08:00:16 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Dashboards-Visualizations/Create-a-dashboard-when-an-alert-is-triggered/m-p/550188#M37975</guid>
      <dc:creator>simomo</dc:creator>
      <dc:date>2021-05-03T08:00:16Z</dc:date>
    </item>
    <item>
      <title>Re: Create a dashboard when an alert is triggered?</title>
      <link>https://community.splunk.com/t5/Dashboards-Visualizations/Create-a-dashboard-when-an-alert-is-triggered/m-p/550197#M37978</link>
      <description>&lt;P&gt;Presumably, the alert is based on the results of a search with particular time parameters. Can you reproduce the search in a dashboard with tokens for the time range. Then you can call this dashboard with the time range token values based on the alert.&lt;/P&gt;</description>
      <pubDate>Mon, 03 May 2021 08:51:49 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Dashboards-Visualizations/Create-a-dashboard-when-an-alert-is-triggered/m-p/550197#M37978</guid>
      <dc:creator>ITWhisperer</dc:creator>
      <dc:date>2021-05-03T08:51:49Z</dc:date>
    </item>
    <item>
      <title>Re: Create a dashboard when an alert is triggered?</title>
      <link>https://community.splunk.com/t5/Dashboards-Visualizations/Create-a-dashboard-when-an-alert-is-triggered/m-p/550209#M37980</link>
      <description>&lt;P&gt;Can you explain more detailedly about the tokens?&amp;nbsp;&lt;/P&gt;&lt;P&gt;Yes the alert is based on scheduled search and only alert when a condition is met (result&amp;gt;0). How do I automate this token and activate the dashboard?&lt;/P&gt;</description>
      <pubDate>Mon, 03 May 2021 09:36:44 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Dashboards-Visualizations/Create-a-dashboard-when-an-alert-is-triggered/m-p/550209#M37980</guid>
      <dc:creator>simomo</dc:creator>
      <dc:date>2021-05-03T09:36:44Z</dc:date>
    </item>
  </channel>
</rss>

