Hi at all,
i have two different Splunk systems and I need to send some alerts from one system to the other one.
what's the easiest way to send an alert from one splunk system to another?
I know that I could use eMail or syslog or a script that calls API, is there another way to do this, what's the easiest one?
Thank you.
Bye.
Giuseppe
if they do not share index layer. Then do something like an alert action that can send events across via HTTP Event Collector.
https://splunkbase.splunk.com/app/3508/
if they do not share index layer. Then do something like an alert action that can send events across via HTTP Event Collector.
https://splunkbase.splunk.com/app/3508/