Other Usage

How to setup alert when new value in field?

namlh
Loves-to-Learn Everything

Hi, i have field IP ADDRESS when user login, so i want to alert email when to have a new ip address. 
Can you help me

Labels (1)
0 Karma

isoutamo
SplunkTrust
SplunkTrust
0 Karma

namlh
Loves-to-Learn Everything

I read the post but i don't understand. I have to run command in image in search splunk ???? OR how can i configure in edit alert ???

namlh_1-1687345538264.png

 

0 Karma

isoutamo
SplunkTrust
SplunkTrust

A previous post show to you how you can find a new IPs for user. Then you just create an alert (Save As -> Alert) which send that result to you or where ever you want to send it.

https://docs.splunk.com/Documentation/Splunk/latest/Alert/Definescheduledalerts

0 Karma

namlh
Loves-to-Learn Everything
I followed it but it doesn't alert, can you check it for me
 
namlh_1-1687416489888.png

 

 
 
 
0 Karma
Get Updates on the Splunk Community!

Database Performance Sidebar Panel Now on APM Database Query Performance & Service ...

We’ve streamlined the troubleshooting experience for database-related service issues by adding a database ...

IM Landing Page Filter - Now Available

We’ve added the capability for you to filter across the summary details on the main Infrastructure Monitoring ...

Dynamic Links from Alerts to IM Navigators - New in Observability Cloud

Splunk continues to improve the troubleshooting experience in Observability Cloud with this latest enhancement ...