Was curious if anyone here uses a python script to pass the results of a search to a email recipient? I would appreciate a look at it to use for a similar purpose. I have a python mail script but not sure how to use it to send my search results.
thanks.
Most of use the built-in sendemail command. You can configure the mail settings within the manager under System settings » Email alert settings.
The easiest way is to send email is to use splunks built in "scheduled search", "alert" or the search command "sendmail" but if you want to do something non standard, you will need to write your own script. You can start with the one splunk uses. Make a copy if the following file and adjust to suit your needs.
$SPLUNK_HOME/etc/apps/search/bin/sendemail.py
Most of use the built-in sendemail command. You can configure the mail settings within the manager under System settings » Email alert settings.