Alerting

what's the easiest way to send an alert from one splunk system to another?

gcusello
SplunkTrust
SplunkTrust

Hi at all,
i have two different Splunk systems and I need to send some alerts from one system to the other one.
what's the easiest way to send an alert from one splunk system to another?
I know that I could use eMail or syslog or a script that calls API, is there another way to do this, what's the easiest one?
Thank you.
Bye.
Giuseppe

0 Karma
1 Solution

starcher
Influencer

if they do not share index layer. Then do something like an alert action that can send events across via HTTP Event Collector.
https://splunkbase.splunk.com/app/3508/

View solution in original post

0 Karma

starcher
Influencer

if they do not share index layer. Then do something like an alert action that can send events across via HTTP Event Collector.
https://splunkbase.splunk.com/app/3508/

0 Karma
Get Updates on the Splunk Community!

Introducing the 2024 SplunkTrust!

Hello, Splunk Community! We are beyond thrilled to announce our newest group of SplunkTrust members!  The ...

Introducing the 2024 Splunk MVPs!

We are excited to announce the 2024 cohort of the Splunk MVP program. Splunk MVPs are passionate members of ...

Splunk Custom Visualizations App End of Life

The Splunk Custom Visualizations apps End of Life for SimpleXML will reach end of support on Dec 21, 2024, ...