Quantcast
Channel: Questions in topic: "universal-forwarder"
Viewing all articles
Browse latest Browse all 1551

I have a dashboard showing a list of triggered alerts, but how can I include information about the host that triggered the alert?

$
0
0
Hi at all, I showed the triggered alerts on a dashboard using a search on the `_internal` index and `source="/opt/splunk/var/log/splunk/scheduler.log"`, after I connected results to a REST extraction to enrich information from savedsearch. My problem is to have the information about the host triggered by alert, because in my search, the only host is the Search Head, but I need the hostname of the alerted host. Can I have it? Thank you in advance. Bye. Giuseppe

Viewing all articles
Browse latest Browse all 1551

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>