I had solved the issue by this way: 1> Add the Telegram alert action for the alerts in Web UI, and Save the changes. 2> Make SSH session to SearchHead server, find and open the file that contains configurations of the alerts that were added Telegram alert action, and add more 5 lines below the line "action.telegram = 1" and save the changes: action.telegram.param.bot_id = Bot-ID action.telegram.param.chat_id = Chat-ID action.telegram.param.severity = Low/Medium/High/Critical action.telegram.param.event_title = Alert title action.telegram.param.message = Alert message 3> Finally, reload/restart Splunk in SH server, and enjoy the results! Anyway, thanks for your helps!
... View more