Quantcast
Channel: Questions in topic: "splunk-enterprise"
Viewing all articles
Browse latest Browse all 47296

Can we update splunk drill now URL in alert actions

$
0
0
Hi , I have splunk enterprise in linux environment . And I am using with service-now integration. For that i am using Splunk add-on for service-now. For creating incidents in servicenow from splunk i am using "|snowincident" command, its working fine. example: | snowincident --category "Network" --contact_type "Walk-in" --subcategory "Database" --short_description "unique sources available" --ci_identifier "8484eb82c1a8014b7bd0919758dcc3c2" --urgency 1 --impact 1 --splunk_url "http://www.google.co.in" --comments "unique sources available" --correlation_id "DataFetch.sourcenumber1" there is a button appearing in service-now called "splunk drilldown" and it takes us to the "splunk url" we configured in the command above. but when i am automating a search using alerts and when configuring alert actions there is "ServiceNow Incident Integration" in there there is no option to enter splunk URL. is there a way to get url even when incident is getting created by alerts.

Viewing all articles
Browse latest Browse all 47296

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>