Splunk Dev

How to enable or disable parameter actions email and script with REST API?

0range
Communicator

subj. how is it possible?
here http://dev.splunk.com/view/python-sdk/SP-CAAAEK2#savedsearchparams the params action.email and action.script are marked as read-only 😞

0 Karma

paramagurukarth
Builder

To Set action.email to 1... send the param "actions" as "email"...
This works for email.. try the same for "alert"
Refer the below rest url of your environment for the internal parameter names used... While creating alerts pragmatically we have to use these parameters...(Applicable for all entities in splunk... :))

https://localhost:8089/servicesNS/UserName/AppName/saved/searches

Get Updates on the Splunk Community!

Stay Connected: Your Guide to November Tech Talks, Office Hours, and Webinars!

🍂 Fall into November with a fresh lineup of Community Office Hours, Tech Talks, and Webinars we’ve ...

Transform your security operations with Splunk Enterprise Security

Hi Splunk Community, Splunk Platform has set a great foundation for your security operations. With the ...

Splunk Admins and App Developers | Earn a $35 gift card!

Splunk, in collaboration with ESG (Enterprise Strategy Group) by TechTarget, is excited to announce a ...