Alerting

Realtime email Alerts?

andrzejwasilews
Explorer

Is it possible (or solution) to send email alert from splunk immediately when event occurs?

I would like to be informed "on event", not 1 munute later (1 minute is the minimal time range in search scheduler).

Tags (1)

ziegfried
Influencer

This is a feature that will be included in the upcoming Splunk 4.2 release.

ftk
Motivator

Nice. Thanks for the correction

0 Karma

BobM
Builder

No this is already available in 4.2

Create your search, select a real-time range (eg 1 minute window) then click 'create an alert'.

0 Karma

ftk
Motivator

I thought this will be in 4.3?

0 Karma

cyfj
Explorer

How that 4.2 is released, can you hint as to where to look? I'm only seeing periodic alerts bases on polling.

0 Karma
Get Updates on the Splunk Community!

New Year. New Skills. New Course Releases from Splunk Education

A new year often inspires reflection—and reinvention. Whether your goals include strengthening your security ...

Splunk and TLS: It doesn't have to be too hard

Overview Creating a TLS cert for Splunk usage is pretty much standard openssl.  To make life better, use an ...

Faster Insights with AI, Streamlined Cloud-Native Operations, and More New Lantern ...

Splunk Lantern is a Splunk customer success center that provides practical guidance from Splunk experts on key ...