Alerting

is it possible to create ticket id for a alert in mail itself?

vengat4043
Path Finder

Hi,

We are using Splunk Enterprise 7.1.1 version, to develop some predictive models and mail alerts to the specific site peoples is there any deviation. As of now mail alerts are working fine and As our Management want something like tracking\ticketing system for each and every mail alert. is it possible to create some ticket id in mail itself to track?

As of Now mail alerts be like:

alt text

And What my management is expecting to be like:

alt text

In Subject itself the Ticket ID need to create and ticket ID is need to log in some index to track the changes of that particular Ticket ID.

Is it possible? can you guys please suggest something? and One more thing we already tried of that Alert Manager is create the incident once the alert generated? my management is not satisfied with that. Please suggest?

Labels (3)
0 Karma

vengat4043
Path Finder

Dear Team,

Is the above scenario is possible in splunk? 

Tags (1)
0 Karma
Get Updates on the Splunk Community!

Stay Connected: Your Guide to May Tech Talks, Office Hours, and Webinars!

Take a look below to explore our upcoming Community Office Hours, Tech Talks, and Webinars this month. This ...

They're back! Join the SplunkTrust and MVP at .conf24

With our highly anticipated annual conference, .conf, comes the fez-wearers you can trust! The SplunkTrust, as ...

Enterprise Security Content Update (ESCU) | New Releases

Last month, the Splunk Threat Research Team had two releases of new security content via the Enterprise ...