Hi
I have file server that everyday backups of servers copy on that server on below path:
/backup/files/
/backup/files/server1/$DATE.zip
/backup/files/server2/$DATE.zip
...
How can I trigger this with Splunk: every day check that path and whenever one server not copy backup files, Splunk alert me.
e.g. backup file every night at 04:00 is ready, every morning at 07:00AM check that path and if find directory that has not have file that create today alert me.
Any idea?
Thanks,
Hi @indeed_2000
How can I trigger this with Splunk: every day check that path and whenever one server not copy backup files, Splunk alert me
you should write a simple query like index=main host=hostname | stats count
and save it as alert.. on the alert, add a condition that if the count is "zero"(the hostname has not sent backup files), then send you an email notification.
Is there any way to create table that show two columns like this?
server Status
/backup/files/server1/$DATE.zip Success
/backup/files/server2/$DATE.zip Failed
would you please show me real example?