Alerting

run two scripts when triggering alert

0range
Communicator

Is it possible to run two scripts at the same time?
for example if I type "a.sh, b.sh" in the corresponding line of savedsearch settings window will Splunk execute both?

Tags (2)
1 Solution

MuS
SplunkTrust
SplunkTrust

Hi 0range,

No, this will not work - just tested that.

But you can create a wrapper script in $SPLUNK_HOME/bin/scripts/ which will call those two scripts and assign the wrapper script to be run when the alert hits - as well, just tested that 😉

cheers, MuS

View solution in original post

MuS
SplunkTrust
SplunkTrust

Hi 0range,

No, this will not work - just tested that.

But you can create a wrapper script in $SPLUNK_HOME/bin/scripts/ which will call those two scripts and assign the wrapper script to be run when the alert hits - as well, just tested that 😉

cheers, MuS

0range
Communicator

thanks MuS... but we have VMware app... 😞

0 Karma

MuS
SplunkTrust
SplunkTrust

check out this app http://apps.splunk.com/app/1730/ maybe this can help you achieving your goals

0 Karma

0range
Communicator

It seems an interesting way to use an external alerting system... but I think it's Splunk's job 😞

0 Karma

MuS
SplunkTrust
SplunkTrust

Or have Splunk sent out the alert to some other Alerting System which will take care of the all your alerting combinations/conditions ....

0 Karma

gfuente
Motivator

What about passing parameters to the wrapping script specifiying the subscripts to be called?

0range
Communicator

No other ways?

0 Karma

0range
Communicator

Sure we can do like this, but the number of combinations scares me..)

0 Karma
Get Updates on the Splunk Community!

New Year. New Skills. New Course Releases from Splunk Education

A new year often inspires reflection—and reinvention. Whether your goals include strengthening your security ...

Splunk and TLS: It doesn't have to be too hard

Overview Creating a TLS cert for Splunk usage is pretty much standard openssl.  To make life better, use an ...

Faster Insights with AI, Streamlined Cloud-Native Operations, and More New Lantern ...

Splunk Lantern is a Splunk customer success center that provides practical guidance from Splunk experts on key ...