I want to create a splunk alert and schedule it in such a way that it should bypass the particular timeframe (e.g it should not run between 9 PM to 12 AM).
How can do it?
Hi There,
I want to create a scheduled search to find if any alerts have been set to disabled. I have looked at the _internal index but can't see any way of detecting the status of the alert. c...
Good afternoon all.
I wonder if you could help me solve this issue I'm experiencing.
I am trying to create a test email alert that notifies me when an EventCode for a successful SQL backup i...
I need to create a alert for service for but real time alert are disabled by admin, now i need to create a alert that if my service got bad service alert more then 5 it will send me mail i...
...xpected. I can view the results in the *Triggered Alerts * and see that it creates 124 lines that look like
host count
XX-APP01 31
XX-APP02 25
etc
H...
Using REST API to call curl command, what is the exact endpoint to hit in order to create a scheduled search with all options like expiration of alerts etc..