Alerting

What does the Add to Triggered Alerts action do for an alert?

Motivator

What does Add to Triggered Alerts do for an alert? I set my alert to Send email and then I get the emails. So I wonder what Add to Triggered Alerts does and when I might need it.

Tags (1)
0 Karma

Splunk Employee
Splunk Employee

This causes the alert to show up in Splunk, in the upper right under the Activity...Triggered Alerts.

Motivator

Great, and if I don't check it the alert won't appear in the _audit index, right?

0 Karma

Motivator

And now it shows in _audit...

0 Karma