All Apps and Add-ons

linux alerting

griffen2000
New Member

just starting test out and try splunk we need an alerting tool for linux to start
the app show built alerts but how do I create a group of admins and setup a call rotation and set that up in the built in alert for splunk

Tags (2)
0 Karma

woodcock
Esteemed Legend

Somebody might very well have created an app to do thins kind of thing; spend some time searching splunkbase (apps.splunk.com).

0 Karma

griffen2000
New Member

well I was just gong to right a bash script but thought there must be a better way

0 Karma

woodcock
Esteemed Legend

You do this by writing a python script and then calling that script (enable "run a script" under "alert actions") when your alert is raised.

0 Karma
Get Updates on the Splunk Community!

Fun with Regular Expression - multiples of nine

Fun with Regular Expression - multiples of nineThis challenge was first posted on Slack #regex channel ...

[Live Demo] Watch SOC transformation in action with the reimagined Splunk Enterprise ...

Overwhelmed SOC? Splunk ES Has Your Back Tool sprawl, alert fatigue, and endless context switching are making ...

What’s New & Next in Splunk SOAR

Security teams today are dealing with more alerts, more tools, and more pressure than ever.  Join us on ...