Quantcast
Channel: Questions in topic: "splunk-enterprise"
Viewing all articles
Browse latest Browse all 47296

How to configure a scheduled alert to trigger one email whenever a specific event is found?

$
0
0
We've been using real time alerts to send us an email whenever a specific log/event is hit. However we only have 4 CPU cores and can only run 4 real time alerts. What is the best configuration to set up a scheduled alert to run every minutes so we get 1 email every time a new log is triggered? I'm getting stuck because it's sending lots of emails each time an alert is triggered. My criteria is 1 new log 1 email sent out.

Viewing all articles
Browse latest Browse all 47296

Trending Articles