| index="db_oracle-prod" source="AzureVOCprod" status=4| eval MSGStatus=case(status=1,"CREATED", status=2,"RUNNING", st... 0 3 | 0 | 3 | ||
| I am very new to Splunk and I am working on building an alert that will trigger when a field has more than 10 unique ... 0 9 | 0 | 9 | ||
| status=4 | eval MSGStatus=case(status=1,"CREATED", status=2,"RUNNING", status=3,"CANCELLED", status=4,"Failed", stat... 0 1 | 0 | 1 | ||
| Hi Friends, Hope everyone doing good! My requirement: I want to send alert results from Splunk to Azure Event Hub. Co... by Jagadeesh2022 Path Finder in Alerting 04-24-2023 0 1 | 0 | 1 | ||
| I'm new to writing apps for Splunk, so I'm trying something simple. A raw payload dump. I have the alert set to log t... 0 4 | 0 | 4 | ||
| Morning all, I have a Powershell 2 script that sends an email to people when my alert is triggered. I can't use an ... 1 0 | 1 | 0 | ||
| Hi, I want to write "Sources Sending High Volume DNS Traffic" rule in Splunk. However, the following calculation does... 0 8 | 0 | 8 | ||
| Currently I have set up an alert to be triggered from Splunk Enterprise and notified in a group channel of Slack.Just... by akarivaratharaj Communicator in Alerting 04-21-2023 0 0 | 0 | 0 | ||
| We have recently switched from email alerts to PagerDuty alerting. With this switch, the link to search results has b... 0 2 | 0 | 2 | ||
| Hi I want to use a lookup table as a whitelist for an alert. 1. I created a whitelist.csv lookup table including src,... 0 1 | 0 | 1 | ||
| Hello I need some assistance please with the alert throttle functionality in splunk Even though we have the alert ... 0 3 | 0 | 3 | ||
| Good Afternoon.My organization uses Cisco AnyConnect. We're concerned that some users may be connecting to our networ... by Network506 Observer in Alerting 04-11-2023 0 0 | 0 | 0 | ||
| Hi, We already have a case open but wondering if someone else ran into this problem. Randomingly Scheduled Searches a... by chrisboy68 Contributor in Alerting 04-11-2023 0 0 | 0 | 0 | ||
| Why does Networktoolkit App open when i use PageDuty App?? 0 1 | 0 | 1 | ||
| Hi here, I am trying to build a Splunk alert with Slack, to pass a table column of value as an array of value, eg. ... by vincentgoh98 Engager in Alerting 04-05-2023 1 9 | 1 | 9 | ||
| Let's say I have a query like "index=myindex honor | stats count by mydata,mydata2". I want to add the results of thi... by onurasln55 Explorer in Alerting 04-05-2023 0 1 | 0 | 1 | ||
| Hi team, How to do certificate monitoring using splunk. Certificates are on windows and Linux machines. Thanks by ManjunathN Engager in Alerting 04-03-2023 0 1 | 0 | 1 | ||
| I need to change the format of the name of the .csv attachments on reports from my organization's saved searches. I'v... 0 1 | 0 | 1 | ||
| folks, we had to do summary indexing of alerts created by savedsearches. This has been accomplished by logevent (Thou... 0 3 | 0 | 3 | ||
| Hi all, I hope somebody can help. I'm looking to create a search based on the following in a Windows event log. I'm ... 0 1 | 0 | 1 | ||
| Hello Everyone, I have an alert that runs every 15 minutes and checks logs for last 15 minute time span. I want the... 0 4 | 0 | 4 | ||
| We have recently upgraded our Splunk cluster to 9.0.1 and one of the application team has highlighted that they are r... 0 1 | 0 | 1 | ||
| chrome.exe and acrobat.exe are very noisy in our environment. I don't want to just exclude the process name because t... 0 2 | 0 | 2 | ||
| Hello All -Is it possible to create a search or alert that is based on dynamic variables?The end goal I'm trying to a... 0 6 | 0 | 6 | ||
| Hi,I want to create alert when for 5 consecutive minutes the threshold breaches 70% ?The query I wrote is: sourcetype... 0 1 | 0 | 1 |