Quantcast
Channel: Questions in topic: "splunk-enterprise"
Viewing all articles
Browse latest Browse all 47296

Need a help in setting alert,

$
0
0
I want to set alert with below query this should report if there is error from service now . i want this alert to be ignored any error logs that occurred before 10:52 EST on 11/16/2017 . eventtype=snow_ta_collector_error OR eventtype=snow_ta_log_error i guess "earliest" can be used but help me in the exact possible one.

Viewing all articles
Browse latest Browse all 47296

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>