alerte splunk

Hi evryone i need an expert in splunk,
I had threatemulation malware integrated with SPLUNK and I want a script that sends me the alert message in this format to alert me  cap.png
Alain VOUCHEAsked:
Who is Participating?
 
btanConnect With a Mentor Exec ConsultantCommented:
You may need to check out to use a script or modify the default sendmail.py script. There is one appls, that uses Python Mail for Scripted Alerts (need to login to access @ https://splunkbase.splunk.com/app/230/). Will need to customise from there.

I am thinking if the send email can be based on search for the log in splunk then may be it can better leveraged sendemail with its argument @ https://docs.splunk.com/Documentation/Splunk/6.4.3/SearchReference/Sendemail

Pardon me as I am not savvy as Splunk expert but though above may be useful heads up..

(Sample list of script including "sendemail.py") @ https://github.com/edosurya/splunk/tree/master/etc/apps/search/bin
0
 
btanExec ConsultantCommented:
Suggest answers as kickstart.
0
Question has a verified solution.

Are you are experiencing a similar issue? Get a personalized answer when you ask a related question.

Have a better answer? Share it in a comment.

All Courses

From novice to tech pro — start learning today.