Hi here, I am trying to build a Splunk alert with Slack, to pass a table column of value as an array of value, eg.
Expected Alert Message
Field1 : ["A1", "A2"]
I am currently referencing the following documentation, with the result token $result.Field1$. However, it shows only the value on the 1st row, ie. Field1 : A1. I wonder is it possible to have the alert message done, with an array of value instead ? Thanks in advance !