Splunk Essentials - Second Edition by Betsy Page Sigman & Erickson Delgado

Splunk Essentials - Second Edition by Betsy Page Sigman & Erickson Delgado

Author:Betsy Page Sigman & Erickson Delgado [Sigman, Betsy Page]
Language: eng
Format: azw3
Publisher: Packt Publishing
Published: 2016-09-30T04:00:00+00:00


Trigger Conditions: These are the conditions or rules that define when the alert will be generated. The predefined conditions that Splunk offers out-of-the-box are:Number of Results: Most commonly used, this tells the alert to run whenever your search returns a certain number of events.

Number of Hosts: This is used when you need to know how many hosts are returning events based on your search.

Number of Sources: This is used when you need to know how many data sources are returning events based on your search.

Custom: This is used when you want to base your condition on the value of a particular field that is returned in your search result. We will discuss this in detail further into this chapter.



Download



Copyright Disclaimer:
This site does not store any files on its server. We only index and link to content provided by other sites. Please contact the content providers to delete copyright contents if any and email us, we'll remove relevant links or contents immediately.