Hi,
this is more a cronjob question than a splunk one. But its simple. You can´t to it by defining a single cronjob like * * * *.
On linux site for example you need to have an extra script for doing this, or need to to it in 3 cronjob definitions.
I think the fastet way to do it is to set up the three alerts. It is not shiny but it works.
kind regards
... View more