Splunk Get Alert Events
Activity Description
Gets a list of Splunk events associated to a specific alert.
Output
A result set or json message of all events associated to entered alert.
Settings
- Module Name – The name of the Splunk Module in Resolve Actions.
- Output Format – Select the Output Format depending on how you’d like to see the values displayed.
- Output Type – Select the Output Type depending on how you’d like to see the values displayed.
- Alert SID – The Splunk alert is matched by the alert's SID.
Example:%Alert_SID%