Alerting

Realtime email Alerts?

andrzejwasilews
Explorer

Is it possible (or solution) to send email alert from splunk immediately when event occurs?

I would like to be informed "on event", not 1 munute later (1 minute is the minimal time range in search scheduler).

Tags (1)

ziegfried
Influencer

This is a feature that will be included in the upcoming Splunk 4.2 release.

ftk
Motivator

Nice. Thanks for the correction

0 Karma

BobM
Builder

No this is already available in 4.2

Create your search, select a real-time range (eg 1 minute window) then click 'create an alert'.

0 Karma

ftk
Motivator

I thought this will be in 4.3?

0 Karma

cyfj
Explorer

How that 4.2 is released, can you hint as to where to look? I'm only seeing periodic alerts bases on polling.

0 Karma
Get Updates on the Splunk Community!

Stay Connected: Your Guide to January Tech Talks, Office Hours, and Webinars!

What are Community Office Hours? Community Office Hours is an interactive 60-minute Zoom series where ...

[Puzzles] Solve, Learn, Repeat: Reprocessing XML into Fixed-Length Events

This challenge was first posted on Slack #puzzles channelFor a previous puzzle, I needed a set of fixed-length ...

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...