Alerting

what's the easiest way to send an alert from one splunk system to another?

gcusello
SplunkTrust
SplunkTrust

Hi at all,
i have two different Splunk systems and I need to send some alerts from one system to the other one.
what's the easiest way to send an alert from one splunk system to another?
I know that I could use eMail or syslog or a script that calls API, is there another way to do this, what's the easiest one?
Thank you.
Bye.
Giuseppe

0 Karma
1 Solution

starcher
Influencer

if they do not share index layer. Then do something like an alert action that can send events across via HTTP Event Collector.
https://splunkbase.splunk.com/app/3508/

View solution in original post

0 Karma

starcher
Influencer

if they do not share index layer. Then do something like an alert action that can send events across via HTTP Event Collector.
https://splunkbase.splunk.com/app/3508/

0 Karma
Get Updates on the Splunk Community!

Developer Spotlight with Paul Stout

Welcome to our very first developer spotlight release series where we'll feature some awesome Splunk ...

Preparing your Splunk Environment for OpenSSL3

The Splunk platform will transition to OpenSSL version 3 in a future release. Actions are required to prepare ...

Deprecation of Splunk Observability Kubernetes “Classic Navigator” UI starting ...

Access to Splunk Observability Kubernetes “Classic Navigator” UI will no longer be available starting January ...