Getting Data In

Sample alert script that sends snmp to a monitoring tool?

maverick
Splunk Employee
Splunk Employee

Does anyone have a sample alert script that, once triggered, takes the data set handle passed to it from the Splunk alert, opens up the csv.gz events file, processes the resulting events, and formats and send an snmp message (that includes results, etc) to a monitoring system?

Anything anyone would care to share along these lines would be greatly appreciated.

0 Karma

bbingham
Builder

I wrote a PHP program that did something very similar. If you know PHP might be a quick hack and smash to pull out what you need. It's posted on splunkbase.

http://www.splunkbase.com/apps/All/4.x/Add-On/app:PHP+Scripted+Alerts

0 Karma
Get Updates on the Splunk Community!

Splunk Mobile: Your Brand-New Home Screen

Meet Your New Mobile Hub  Hello Splunk Community!  Staying connected to your data—no matter where you are—is ...

Introducing Value Insights (Beta): Understand the Business Impact your organization ...

Real progress on your strategic priorities starts with knowing the business outcomes your teams are delivering ...

Enterprise Security (ES) Essentials 8.3 is Now GA — Smarter Detections, Faster ...

As of today, Enterprise Security (ES) Essentials 8.3 is now generally available, helping SOC teams simplify ...