Alerting

I created an alert where a batch file needs to be run when triggered, but why am I getting null (" ") for %8?

harish_ka
Communicator

I created an alert where a batch file needs to be run when triggered. In the batch file I used the command

echo  %0, %1, %2, %3, %4, %5, %6, %7, %8 >>

where I am getting null " " for %8 (file where the results are stored).
Pls someone help me to find the solution.

I need to get the search results as well. Let's say I have 2 columns named ColA & ColB. How do I get the search results for these 2 columns?

0 Karma

woodcock
Esteemed Legend

It is the 8th variable so it is the 7th 0-based index (e.g. %7). Also, the results are gzipped so you will have to gunzip them.

0 Karma

harish_ka
Communicator

i tried %9 and it worked, i am trying in 6.3.1 version.

0 Karma
Get Updates on the Splunk Community!

AI for AppInspect

We’re excited to announce two new updates to AppInspect designed to save you time and make the app approval ...

App Platform's 2025 Year in Review: A Year of Innovation, Growth, and Community

As we step into 2026, it’s the perfect moment to reflect on what an extraordinary year 2025 was for the Splunk ...

Operationalizing Entity Risk Score with Enterprise Security 8.3+

Overview Enterprise Security 8.3 introduces a powerful new feature called “Entity Risk Scoring” (ERS) for ...