<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Setting a default action for alert in splunk in Splunk Search</title>
    <link>https://community.splunk.com/t5/Splunk-Search/Setting-a-default-action-for-alert-in-splunk/m-p/361899#M106917</link>
    <description>&lt;P&gt;You can use &lt;CODE&gt;[default]&lt;/CODE&gt; stanza in savedsearches.conf to assign an attribute to all saved searches. You can use attributes described in below link to setup your email alert.&lt;/P&gt;

&lt;P&gt;&lt;A href="http://docs.splunk.com/Documentation/Splunk/6.5.3/Admin/Savedsearchesconf#Settings_for_email_action"&gt;http://docs.splunk.com/Documentation/Splunk/6.5.3/Admin/Savedsearchesconf#Settings_for_email_action&lt;/A&gt;&lt;/P&gt;

&lt;P&gt;Please note that this will get applied to all scheduled searches (unless overridden at search level).&lt;/P&gt;</description>
    <pubDate>Wed, 03 May 2017 20:41:37 GMT</pubDate>
    <dc:creator>somesoni2</dc:creator>
    <dc:date>2017-05-03T20:41:37Z</dc:date>
    <item>
      <title>Setting a default action for alert in splunk</title>
      <link>https://community.splunk.com/t5/Splunk-Search/Setting-a-default-action-for-alert-in-splunk/m-p/361898#M106916</link>
      <description>&lt;P&gt;HI,&lt;/P&gt;

&lt;P&gt;Is there anyway in splunk to set the "email" as default trigger action for an alert. &lt;/P&gt;</description>
      <pubDate>Wed, 03 May 2017 20:28:10 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/Setting-a-default-action-for-alert-in-splunk/m-p/361898#M106916</guid>
      <dc:creator>kteng2024</dc:creator>
      <dc:date>2017-05-03T20:28:10Z</dc:date>
    </item>
    <item>
      <title>Re: Setting a default action for alert in splunk</title>
      <link>https://community.splunk.com/t5/Splunk-Search/Setting-a-default-action-for-alert-in-splunk/m-p/361899#M106917</link>
      <description>&lt;P&gt;You can use &lt;CODE&gt;[default]&lt;/CODE&gt; stanza in savedsearches.conf to assign an attribute to all saved searches. You can use attributes described in below link to setup your email alert.&lt;/P&gt;

&lt;P&gt;&lt;A href="http://docs.splunk.com/Documentation/Splunk/6.5.3/Admin/Savedsearchesconf#Settings_for_email_action"&gt;http://docs.splunk.com/Documentation/Splunk/6.5.3/Admin/Savedsearchesconf#Settings_for_email_action&lt;/A&gt;&lt;/P&gt;

&lt;P&gt;Please note that this will get applied to all scheduled searches (unless overridden at search level).&lt;/P&gt;</description>
      <pubDate>Wed, 03 May 2017 20:41:37 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/Setting-a-default-action-for-alert-in-splunk/m-p/361899#M106917</guid>
      <dc:creator>somesoni2</dc:creator>
      <dc:date>2017-05-03T20:41:37Z</dc:date>
    </item>
    <item>
      <title>Re: Setting a default action for alert in splunk</title>
      <link>https://community.splunk.com/t5/Splunk-Search/Setting-a-default-action-for-alert-in-splunk/m-p/361900#M106918</link>
      <description>&lt;P&gt;Can i set the webhook as default trigger action as in the documentation i see only for  email.&lt;/P&gt;</description>
      <pubDate>Wed, 03 May 2017 21:28:24 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/Setting-a-default-action-for-alert-in-splunk/m-p/361900#M106918</guid>
      <dc:creator>kteng2024</dc:creator>
      <dc:date>2017-05-03T21:28:24Z</dc:date>
    </item>
  </channel>
</rss>

