Hi ,
I want to show dashboard showing Alert statistics.
Like total number alerts exists on app , Number of alerts sent , Number of alerts triggered , Number of total alerts notified to slack channel etc.
So, how to get all alert details from internal index?
Please suggest.
|rest /servicesNS/-/-/saved/searches
OR
index=_internal sourcetype="scheduler"
rest
has too much information.
_internal is better.
@to4kawa Is this possible with internal log.. index=_internal ?
Please suggest