Hi,
I'm struggling to create email alert.
My search query:
`| rex "Heap:\s(?[\d\.]+)(?\w+)" | search HeapNum!=" " | eval HeapNum = case(unit="K",HeapNum/1000,unit="M", HeapNum,unit="G", HeapNum*1000) | eval critical=15000 | table _time HeapNum critical`
I want, that when it reaches critical value, it sends email to me.
I created alert, but it doesn't work, can you please help with configuration?
![alt text][1]
![alt text][2]
[1]: /storage/temp/274699-splunk-alert.jpg
[2]: /storage/temp/274700-splunk-alert2.jpg
↧