Splunk Search

How to set an alert running every day hourly?

wanda619
Path Finder

how to set an alert running every day hourly?

ex - if new transactions /events occur alert the user

Labels (3)
0 Karma

richgalloway
SplunkTrust
SplunkTrust

Please describe your use case some more, please.

The Splunk alert UI offers a dropdown to select "hourly" as a run interval.  How does that not meet your needs?

---
If this reply helps you, Karma would be appreciated.

wanda619
Path Finder

@richgalloway I want to set up an automated alert on the report , i guess we can use cron expression but not sure how

0 Karma

richgalloway
SplunkTrust
SplunkTrust

The alert definition menu has a dropdown for the run interval.  The last entry in the dropdown lets you specify a cron schedule for the alert.  This is a set of 5 numbers, number ranges, and/or number lists that tell Splunk when to run the alert.  I won't go into a full description of cron, but you can visit https://crontab.guru for assistance with generating a cron schedule.

---
If this reply helps you, Karma would be appreciated.
Get Updates on the Splunk Community!

Observability Unlocked: Kubernetes & Cloud Monitoring with Splunk IM

Ready to master Kubernetes and cloud monitoring like the pros? Join Splunk’s Growth Engineering team on ...

Index This | What did the zero say to the eight?

June 2025 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with this month’s ...

Splunk Observability Cloud's AI Assistant in Action Series: Onboarding New Hires & ...

This is the fifth post in the Splunk Observability Cloud’s AI Assistant in Action series that digs into how to ...