hi Team, is it possible to retrive the action items present on an alert based on the alert name using python SDK
Example i know i have an alert by the name which skipped
using that name i can retrive the query that is used. but wondering if i can retrive the action on the alert (like the webhook or the emails to which it is sent, and the cron schedule)
Use the SDK to send this REST command
| rest /servicesNS/-/-/saved/searches/CPU%20Utilization splunk_server=local
The fields you want to look for in the response are cron_schedule and action.*