Hi Folks,
Is there any way to bulk edit many alerts/reports or dashboards in Splunk Cloud?
For example, I'm planning to edit the index of many alerts at the same time but I cannot find an option to do this in bulk.
Any insight will be appreciated.
Thanks in advance!
Hi
I don't think that you have at least any easy solutions to this? Maybe you should change your index definitions on those queries to macros and later on you could just change the content of this macro to something else?
r. Ismo