Splunk Search

Sendmail command in query doest not popoulate the Dashboard

vikramyadav
Contributor

I am creating a dashboard with mail to button in it, in the query I have inserted the sendmail to command at the end. The observation is If I have the sendemail at the end then visual table does not populate below, at the same time if I remove it then the table gets populated. How to show the table results using sendmail command.

alt text

I am using the text field input as mail ID from user also query is simple with table command in it ..


.......| table host | sendemail to="$mail$" subject=failed_login server=smtp sendresults=true


somesoni2
SplunkTrust
SplunkTrust

Give this a try

your current search before sendemail command
| appendpipe [| sendemail....portion..here...]
Get Updates on the Splunk Community!

Index This | I am a number, but when you add ‘G’ to me, I go away. What number am I?

March 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...

What’s New in Splunk App for PCI Compliance 5.3.1?

The Splunk App for PCI Compliance allows customers to extend the power of their existing Splunk solution with ...

Extending Observability Content to Splunk Cloud

Register to join us !   In this Extending Observability Content to Splunk Cloud Tech Talk, you'll see how to ...