I'm trying to output an alert via syslog to our Orion server. Any suggestions on how to do that?
Launch a script on the splunk server. Have that script parse the results, format a syslog message, and send it via the logger command to syslog.
It can be done quite easily, an example is available in the admin manual: http://www.splunk.com/base/Documentation/latest/Admin/Configurescriptedalerts
Luke 🙂
Get your scripting hat on, this isn't a feature Splunk can just do I'm afraid. Somebody out in the wide world may have done this already, but I've not specifically heard of it.