Reporting

Having issues sending PDF in email when alert is triggered

brian1_tate
Path Finder

Let's let say that I have am alert rule that if the number of failured Windows logins exceed three in 15 minutes. I believe that the alert is sent to my email but I can't figure out how to send a PDF in the alert that has the possible hosts that are applicable, the only useless message displayed in the rule has been listed I telling users to log in to Splunk ( which they can't) they are end users at remote facilities that do not have that access. Anyone ever done this because I could really use you help.
M
thx

0 Karma

richgalloway
SplunkTrust
SplunkTrust

Edit your alert and click the link to edit actions. Under "Enable Actions", check the "Enable Email" box and you should see a selection of items to include in the alert. Select "Attach PDF" and click Save.

---
If this reply helps you, Karma would be appreciated.
0 Karma
Get Updates on the Splunk Community!

Introducing the Splunk Community Dashboard Challenge!

Welcome to Splunk Community Dashboard Challenge! This is your chance to showcase your skills in creating ...

Built-in Service Level Objectives Management to Bridge the Gap Between Service & ...

Wednesday, May 29, 2024  |  11AM PST / 2PM ESTRegister now and join us to learn more about how you can ...

Get Your Exclusive Splunk Certified Cybersecurity Defense Engineer Certification at ...

We’re excited to announce a new Splunk certification exam being released at .conf24! If you’re headed to Vegas ...