Python Alerts Applications

Want to share alerts?

Alert Applications allow you to download Splunk alerts other people have created, or to share your own! Even better, an Application can have more than one type of content, so you can add alerts to any Application.

Not a Splunk user? Download Splunk, set up your Splunk server, and then install your Applications(s) to extend your server.

Splunk Parse

Splunk Parse (splunk_parse.py) is a python script you can set as your alert action on a saved search. It reads in the fields a saved search passing along and parses the corresponding saved search log file which is in CSV format. The parsing spits out the originating host and the full original problem. In this version it's feed to my ticketing system, but the output action can be easily changed.

Author: shaggy Type: Searches, Integration, Custom Processing, Alerts
Rating: Awaiting 3 votes Added: 8 months ago
Downloads: 119 Last Updated: 8 months ago
License: Creative Commons Price: Free
Categories: