Hi,
I have two scheduled searches that aren't running anymore and I've no idea why. The cron is correct, when running the search there are results but I'm not receiving any alerts. Checking the next scheduled time today I noticed that the next scheduled search was dated several days in the past.
I've tried adjusting the cron schedule but that didn't work I've also tried disabling and renenabling the search but it hasn't resolved it either.
It is Splunk Cloud.
please post your cron schedule
I have two searches this is occuring for:
1) */5 * * * *
2) */15 * * * *