Quantcast
Channel: Questions in topic: "splunk-enterprise"
Viewing all articles
Browse latest Browse all 47296

Alert with email

$
0
0
Hi, I'm struggling to create email alert. My search query: `| rex "Heap:\s(?[\d\.]+)(?\w+)" | search HeapNum!=" " | eval HeapNum = case(unit="K",HeapNum/1000,unit="M", HeapNum,unit="G", HeapNum*1000) | eval critical=15000 | table _time HeapNum critical` I want, that when it reaches critical value, it sends email to me. I created alert, but it doesn't work, can you please help with configuration? ![alt text][1] ![alt text][2] [1]: /storage/temp/274699-splunk-alert.jpg [2]: /storage/temp/274700-splunk-alert2.jpg

Viewing all articles
Browse latest Browse all 47296

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>