Hi everyone
I need a query to check the alert status close with time and when the same alert got triggered 1 st time in Splunk it may be 1 week before and now we r closing same alert can be triggered multiple time so need an historical data of the alert with current status closed time
Thanks in advance