Alerting

Scheduled searches stuck in past?

ebs
Communicator

Hi, 

I have two scheduled searches that aren't running anymore and I've no idea why. The cron is correct, when running the search there are results but I'm not receiving any alerts. Checking the next scheduled time today I noticed that the next scheduled search was dated several days in the past.

I've tried adjusting the cron schedule but that didn't work I've also tried disabling and renenabling the search but it hasn't resolved it either.

 

It is Splunk Cloud.

Labels (2)
0 Karma

cesaccenturefed
Path Finder

We are seeing the same behavior, will update if we figure out a root cause or issue. 

0 Karma

pratibha0610
Explorer

@cesaccenturefed : did you see any solution for this issue?

0 Karma

jodonald
Explorer

please post your cron schedule

0 Karma

ebs
Communicator

I have two searches this is occuring for:

1) */5 * * * *
2) */15 * * * *

Tags (1)
0 Karma
Get Updates on the Splunk Community!

Your Guide to SPL2 at .conf24!

So, you’re headed to .conf24? You’re in for a good time. Las Vegas weather is just *chef’s kiss* beautiful in ...

Get ready to show some Splunk Certification swagger at .conf24!

Dive into the deep end of data by earning a Splunk Certification at .conf24. We're enticing you again this ...

Built-in Service Level Objectives Management to Bridge the Gap Between Service & ...

Now On-Demand Join us to learn more about how you can leverage Service Level Objectives (SLOs) and the new ...