Dashboards & Visualizations

tokens in Email Alert

4uramana4u
Explorer

Search|  table ERROR_CD, HAWB, UREF, LRN, MRN, ER1_ER9_Details

Splunk Alert: "$results.ERROR_CD$ $results.HAWB$"

 

I am using the following value for email subject ,  returning empty..

Any advise how can use field values as email tokens? 

 

Labels (1)
0 Karma

4uramana4u
Explorer

It's working.

 

I should be using 'result' instead of 'results'

Tags (1)
0 Karma
Get Updates on the Splunk Community!

New in Observability - Improvements to Custom Metrics SLOs, Log Observer Connect & ...

The latest enhancements to the Splunk observability portfolio deliver improved SLO management accuracy, better ...

Improve Data Pipelines Using Splunk Data Management

  Register Now   This Tech Talk will explore the pipeline management offerings Edge Processor and Ingest ...

3-2-1 Go! How Fast Can You Debug Microservices with Observability Cloud?

Register Join this Tech Talk to learn how unique features like Service Centric Views, Tag Spotlight, and ...