Search| table ERROR_CD, HAWB, UREF, LRN, MRN, ER1_ER9_Details
Splunk Alert: "$results.ERROR_CD$ $results.HAWB$"
I am using the following value for email subject , returning empty..
Any advise how can use field values as email tokens?
It's working.
I should be using 'result' instead of 'results'