I created savedsearches.conf file to create a splunkalert and restart the splunk service, but I still can't see the new alert in the UI, I am using the following configuration:
Thanks in advance!
Hello,
please can someone assist with creating syntax to
1. know the numbers of desktop, laptops, servers and network devices that I have onboarded into Splunk cloud?
2. Createalert if a...
...ocs.splunk.com/Documentation/SplunkCloud/latest/Alert/DefineRealTimeAlerts#Create_a_real-time_alert_with_rolling_window_triggering That said, I did not find those instructions to be helpful for a percentage t...
Hi,
I'd like to create a visualization that shows trends between alerts that have been fired. The graph will show the frequency of a given range of alerts and how often they was triggered on the s...
...o create an alert for all those events if my current time(system time) and the LastUpdateTime difference is more than 30 minutes, in this scenario what will be my search string.
It would be a great h...
Hello Fellow Splunkers!
The goal is to create ServiceNow Incidents/Events exclusively from Splunk Enterprise alerts using the Custom Alert action (we do not have Splunk ES or Splunk ITSI*).&n...
Dashboards created in Splunk 6.2 are not showing up correctly on SplunkMobile App. However, dashboards that were created in an older version of Splunk (ver. 6.1) are rendered correctly (but the t...
...ot use Splunk Add-on Builder and simply manually edit the alert_actions.conf, app.conf and UI etc.. The python script under the bin folder of app fetch the payload and reads the host field and based on t...