Monitoring Splunk

How to export all email address from Splunk report/alert?

michael_wong
Path Finder

I want to export a list of email address that configured on all report/alert email receiver, Is it possible to do that ? Appreciated if anyone can help.

Labels (1)
0 Karma

thambisetty
Super Champion

The below search will return all searches with email addresses configured in "to". 

 

| rest splunk_server=local count=0 /services/saved/searches | table title, action.email.to

 

you  can play around with the rest as per your need.

please like answer if it solves your problem.

————————————
If this helps, give a like below.
0 Karma
Get Updates on the Splunk Community!

NEW! Log Views in Splunk Observability Dashboards Gives Context From a Single Page

Today, Splunk Observability releases log views, a new feature for users to add their logs data from Splunk Log ...

Last Chance to Submit Your Paper For BSides Splunk - Deadline is August 12th!

Hello everyone! Don't wait to submit - The deadline is August 12th! We have truly missed the community so ...

Ready, Set, SOAR: How Utility Apps Can Up Level Your Playbooks!

 WATCH NOW Powering your capabilities has never been so easy with ready-made Splunk® SOAR Utility Apps. Parse ...