Alerting

is it possible to create ticket id for a alert in mail itself?

vengat4043
Path Finder

Hi,

We are using Splunk Enterprise 7.1.1 version, to develop some predictive models and mail alerts to the specific site peoples is there any deviation. As of now mail alerts are working fine and As our Management want something like tracking\ticketing system for each and every mail alert. is it possible to create some ticket id in mail itself to track?

As of Now mail alerts be like:

alt text

And What my management is expecting to be like:

alt text

In Subject itself the Ticket ID need to create and ticket ID is need to log in some index to track the changes of that particular Ticket ID.

Is it possible? can you guys please suggest something? and One more thing we already tried of that Alert Manager is create the incident once the alert generated? my management is not satisfied with that. Please suggest?

Labels (3)
0 Karma

vengat4043
Path Finder

Dear Team,

Is the above scenario is possible in splunk? 

Tags (1)
0 Karma
Get Updates on the Splunk Community!

Enterprise Security Content Update (ESCU) | New Releases

In December, the Splunk Threat Research Team had 1 release of new security content via the Enterprise Security ...

Why am I not seeing the finding in Splunk Enterprise Security Analyst Queue?

(This is the first of a series of 2 blogs). Splunk Enterprise Security is a fantastic tool that offers robust ...

Index This | What are the 12 Days of Splunk-mas?

December 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...