Other Usage

How can I trigger multiple alerts, one for each row in a query?

trevorreed
Explorer

My query returns multiple rows, one for each environment that meets a certain condition. I would like to trigger an alert for each row (environment) that meets the condition. Is there a way to do this in Splunk?

Labels (1)
0 Karma
1 Solution

richgalloway
SplunkTrust
SplunkTrust

Edit the search and select "For each result" in the Trigger field.

richgalloway_0-1695930467343.png

 

---
If this reply helps you, Karma would be appreciated.

View solution in original post

richgalloway
SplunkTrust
SplunkTrust

Edit the search and select "For each result" in the Trigger field.

richgalloway_0-1695930467343.png

 

---
If this reply helps you, Karma would be appreciated.
Get Updates on the Splunk Community!

Detecting Remote Code Executions With the Splunk Threat Research Team

WATCH NOWRemote code execution (RCE) vulnerabilities pose a significant risk to organizations. If exploited, ...

Enter the Splunk Community Dashboard Challenge for Your Chance to Win!

The Splunk Community Dashboard Challenge is underway! This is your chance to showcase your skills in creating ...

.conf24 | Session Scheduler is Live!!

.conf24 is happening June 11 - 14 in Las Vegas, and we are thrilled to announce that the conference catalog ...