Alerting

Realtime email Alerts?

andrzejwasilews
Explorer

Is it possible (or solution) to send email alert from splunk immediately when event occurs?

I would like to be informed "on event", not 1 munute later (1 minute is the minimal time range in search scheduler).

Tags (1)

ziegfried
Influencer

This is a feature that will be included in the upcoming Splunk 4.2 release.

ftk
Motivator

Nice. Thanks for the correction

0 Karma

BobM
Builder

No this is already available in 4.2

Create your search, select a real-time range (eg 1 minute window) then click 'create an alert'.

0 Karma

ftk
Motivator

I thought this will be in 4.3?

0 Karma

cyfj
Explorer

How that 4.2 is released, can you hint as to where to look? I'm only seeing periodic alerts bases on polling.

0 Karma
Get Updates on the Splunk Community!

New Year, New Changes for Splunk Certifications

As we embrace a new year, we’re making a small but important update to the Splunk Certification ...

[Puzzles] Solve, Learn, Repeat: Unmerging HTML Tables

[Puzzles] Solve, Learn, Repeat: Unmerging HTML TablesFor a previous puzzle, I needed some sample data, and ...

Enterprise Security (ES) Essentials 8.3 is Now GA — Smarter Detections, Faster ...

As of today, Enterprise Security (ES) Essentials 8.3 is now generally available, helping SOC teams simplify ...