I want to fetch the results from triggered alerts from time T1 to T2.
Tried passing the earliest_time or earliest query params but it didn't work. Can someone please let me how to pass the time filter params to the following rest apis
https://splunk1:8089/servicesNS/nobody/-/alerts/fired_alerts/-?output_mode=json
I think this Is duplicate question.
I have answered your question on this link.
KV