email reporting


Can the Splunk-driven reporting process send a report via email with the results based upon the specific criteria?

Tags (1)
0 Karma


I don't understand what you mean by "specific criteria". But you can schedule a search to run and send its results via email. You can also schedule an alert to run and search and then send the email only if certain conditions are met.

Here is the documentation on setting up an alert; or just click Create->Alert.

A scheduled search can be created in 4.3 by clicking Create -> Scheduled Search.

Get Updates on the Splunk Community!

Splunk Forwarders and Forced Time Based Load Balancing

Splunk customers use universal forwarders to collect and send data to Splunk. A universal forwarder can send ...

NEW! Log Views in Splunk Observability Dashboards Gives Context From a Single Page

Today, Splunk Observability releases log views, a new feature for users to add their logs data from Splunk Log ...

Last Chance to Submit Your Paper For BSides Splunk - Deadline is August 12th!

Hello everyone! Don't wait to submit - The deadline is August 12th! We have truly missed the community so ...