I have a unique requirement to forward Splunk alerts to external syslog server. I have only seen use cases of forwarding data from Splunk heavy forwarder to syslog which is straightforward. However our use case is such that Splunk should forward alerts to syslog server anytime alert is triggered. I used some syslog Mod alert from splunkbase but none worked. Any suggestions
Hi inventsekar,
Syslog is not web based and so am not sure webhook applies here as syslog uses UDP 514 as in our case
Hi @chidex123 ... i am not much sure,. but, pls check these:
Send alert notifications to third-party services using Splunk Observability Cloud
https://docs.splunk.com/Observability/admin/notif-services/admin-notifs-index.html
Send alert notifications to a webhook using Splunk Observability Cloud
https://docs.splunk.com/Observability/admin/notif-services/webhook.html
@chidex123 Did you solve this issue?