...ee this error in the splunkd.log:
08-29-2018 15:10:40.746 -0400 ERROR sendmodalert - Error in 'sendalert' command: Alert action "showconfiguration" not found.
I don't know what I did wrong here....
Good day. I am trying to use the sendalert command in Splunk to send a set of results to Splunk SOAR(Phantom), each result appears in phantom as a new event, would there be a way to receive only o...
Hello All, We have a custom alert action (built with the Splunk Add-on Builder) that sends search results to a HEC input. We have heartbeat searches that trigger the alert action periodically to ens...
Hello,
I'm in need of clarification regarding custom alert actions and, in particular, the payload generated by the sendalert command. Sadly, I was unable to find these points adressed in the d...
A saved search that ends with
| sendalert risk param._risk_score=risk_score
runs fine, but fails when run as a saved search with the error
Error in 'sendalert' command: Alert script returned e...
Dear Experts I am using sendalert command to invoke a custom alert action. It currently only triggers once irrespective of no of results. Is it possible to trigger it for each result.
Im executing my custom alert action with sendalert action_name command and it executes correctly.
I can see the output in job logs but it doesnt get indexed in _internal index as standard a...
Hello,
I have a custom alert action that was working a few days ago and now I'm getting this error and the log is not very helpful in this case. All off the required parameter are set but every at...