Reporting

When I send the splunk search result data via webhook I am only getting only the  first row, any alternative?

deepakgarg1373
Loves-to-Learn Lots

When I send the splunk search result data via webhook I am only getting only the  first row. Is there any alternative to this?

Labels (1)
Tags (1)
0 Karma

marysan
Communicator

Hi

in Edit Alert ->"Trigger Conditions" -> Trigger

you must select "Once" option instead of "For each result"

0 Karma

deepakgarg1373
Loves-to-Learn Lots

sure let me try

0 Karma

ITWhisperer
SplunkTrust
SplunkTrust

Could you use the result_link token to call back using the ReST interface to retrieve the results?

0 Karma
Get Updates on the Splunk Community!

A Season of Skills: New Splunk Courses to Light Up Your Learning Journey

There’s something special about this time of year—maybe it’s the glow of the holidays, maybe it’s the ...

Announcing the Migration of the Splunk Add-on for Microsoft Azure Inputs to ...

Announcing the Migration of the Splunk Add-on for Microsoft Azure Inputs to Officially Supported Splunk ...

Splunk Observability for AI

Don’t miss out on an exciting Tech Talk on Splunk Observability for AI! Discover how Splunk’s agentic AI ...