Splunk Dev

How to enable or disable parameter actions email and script with REST API?

0range
Communicator

subj. how is it possible?
here http://dev.splunk.com/view/python-sdk/SP-CAAAEK2#savedsearchparams the params action.email and action.script are marked as read-only 😞

0 Karma

paramagurukarth
Builder

To Set action.email to 1... send the param "actions" as "email"...
This works for email.. try the same for "alert"
Refer the below rest url of your environment for the internal parameter names used... While creating alerts pragmatically we have to use these parameters...(Applicable for all entities in splunk... :))

https://localhost:8089/servicesNS/UserName/AppName/saved/searches

Get Updates on the Splunk Community!

Preparing your Splunk Environment for OpenSSL3

The Splunk platform will transition to OpenSSL version 3 in a future release. Actions are required to prepare ...

Unleash Unified Security and Observability with Splunk Cloud Platform

     Now Available on Microsoft AzureThursday, March 27, 2025  |  11AM PST / 2PM EST | Register NowStep boldly ...

Splunk AppDynamics with Cisco Secure Application

Web applications unfortunately present a target rich environment for security vulnerabilities and attacks. ...