I was going to use my application's setup screen to populate the following items in the alert_actions.conf file.
action.email.cc = me@myserver.com
action.email.to = him@myserver.com
action.email.subject = Splunk Alert: $name$
I successfully set this information with my setup screen.
However, when I go to a saved search, and activate the alert email, these these are not populated with the default information.
Any ideas why?