Reporting

how i can send email when snort splunk catch a alert

souflam89
New Member

then i installed a splunk with splunk snort,i want send all alert or when a alert genrated to my boxemail gmail how i can do that

ps:i have a mta ssmtp configured with gmail

sorry for mu english 🙂

Tags (4)
0 Karma

Ayn
Legend

Build your search for which events you want to receive an alert for. For instance if you just want anything that is generated by snort: use "sourcetype=snort". After that, schedule this search and create an alert from it and configure Splunk to send you an email when the alert triggers. This is excellently covered in the manual:

http://www.splunk.com/base/Documentation/latest/User/SchedulingSavedSearches

Get Updates on the Splunk Community!

Data Management Digest – November 2025

  Welcome to the inaugural edition of Data Management Digest! As your trusted partner in data innovation, the ...

Splunk Mobile: Your Brand-New Home Screen

Meet Your New Mobile Hub  Hello Splunk Community!  Staying connected to your data—no matter where you are—is ...

Introducing Value Insights (Beta): Understand the Business Impact your organization ...

Real progress on your strategic priorities starts with knowing the business outcomes your teams are delivering ...