i have a set of events coming to splunk from one of my linux server. How can i configure an alert for such events and sent that to a distribution list for that ?
For generic question of "how to create an email alert from my data", I would suggest to go through following links
Splunk Video
http://www.splunk.com/view/SP-CAAAGYG
Splunk Doc
http://docs.splunk.com/Documentation/Splunk/6.4.3/Alert/Emailnotification
http://docs.splunk.com/Documentation/Splunk/6.4.3/Alert/Definescheduledalerts
Not sure I understand the question entirely. Could you provide a pseudo example?