Reporting

How to include the current date and time in the email when using the sendemail command in a search?

rkanumula
Path Finder

hi,

i have to attach the current time in sendemail
Below is my search:

index=_internal| head 5|table source,sourcetype | sendemail to=abc@abc.com server=localhost subject="Report No 1 has been executed at"+""+now()  message="This is an example message" sendresults=true inline=true format=raw sendpdf=false

and also i have tried

index=_internal| head 5|table source,sourcetype | sendemail to=abc@abc.com server=localhost subject="Report No 1 has been executed at"+""+$_time$  message="This is an example message" sendresults=true inline=true format=raw sendpdf=false

but i am not getting the date in the message.

Getting Output:
Report No 1 has been executed at

Expected Output:
My Subject : Report No 1 has been executed at 27/05/2015 10.12.10 AM

Please suggest how to edit my search.

Thanks in Advance

Tags (4)
0 Karma

stephanefotso
Motivator

Hello!
Why don't you use the Email Actions dialog box to send your email? it will be simple, by using $job.earliestTime$ inthe subject field.
Thanks

manirao
Explorer

@ stephan

[November 05, 2018] [03:12:04] , this does not give AM or PM
So, either it should give AM/PM or give the value in 24 H format

Thanks in Advance

0 Karma
Get Updates on the Splunk Community!

Index This | A sphere has three, a circle has two, and a point has zero. What is it?

September 2023 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...

Build Scalable Security While Moving to Cloud - Guide From Clayton Homes

 Clayton Homes faced the increased challenge of strengthening their security posture as they went through ...

Mission Control | Explore the latest release of Splunk Mission Control (2.3)

We’re happy to announce the release of Mission Control 2.3 which includes several new and exciting features ...