Alerting

Splunk Alert to python

johnsasikumar
Path Finder

Hi i have a query which gives output of _time, message. The message column holds the actual alert message. I have saved this search as an alert,
How do we export this message into a python or batch file? is this possible.

Tags (1)
0 Karma

niketn
Legend

@johnsasikumar you should be creating a Custom Alert Action which can execute your python script. Refer to Splunk documentation: https://docs.splunk.com/Documentation/Splunk/latest/AdvancedDev/ModAlertsIntro

____________________________________________
| makeresults | eval message= "Happy Splunking!!!"
Get Updates on the Splunk Community!

Splunk and TLS: It doesn't have to be too hard

Overview Creating a TLS cert for Splunk usage is pretty much standard openssl.  To make life better, use an ...

Faster Insights with AI, Streamlined Cloud-Native Operations, and More New Lantern ...

Splunk Lantern is a Splunk customer success center that provides practical guidance from Splunk experts on key ...

Splunk Enterprise Security: Your Command Center for PCI DSS Compliance

Every security professional knows the drill. The PCI DSS audit is approaching, and suddenly everyone's asking ...