Hi Guys,
In my project environment, every splunkd is installed using splunk user. So I need to create an alert if any splunkd on any splunk server (enterprise or UF) gets started with root or any o...
Hi everyone, Based on the SplunkMobile documentation, users can react to alerts by configuring an action name and a corresponding URL for the action, as highlighted here: https://docs.splunk.com/D...
Hi
I have date format in logs as below.
Expiry date : Sun Apr 11 05:00:00 MST 2021
I need to create an alert if the expiry date less than 90 days from today.
This is what I tried w...
...eing fed into the Slack Notification App in order to produce a Splunk Bot post in a particular Channel. So far I have not been able to do this with any combination of custom alerts and searches. Any h...
Hello. I created an alert (based off a search I wrote) within one of my splunk apps. I tested the alert out and it works. The problem is that I cannot find the alert name in my list of alerts. I t...
I am trying to create a splunkalert for duplicate data and would like some help in creating the splunk search. The data looks something like this for a giving search time duration
Server P...
Hi,
I am creating an alert in Splunk, and I want to send this as an event in ServiceNow. So, I am using ServiceNow Add-on for Splunk.
Under Trigger Actions, i am using ServiceNow Event I...
...ertificate Issuer Name, Certificate Serial Number, and Certificate Thumbprint. Ideally, I want to extract the Certificate Thumbprint field so I can create an alert. But b...