Splunk Search

Is it possible to email alerts with only an attachment, so without "view results" and "alert" links?

rrovers
Communicator

I know there is an option "advanced search" but I can't find an option there to exclude the links

Labels (1)
0 Karma
1 Solution

rrovers
Communicator

It looks different in my screen (maybe different version) but found this in "advanced search":

 

action.email.include.results_link

action.email.include.view_link

 
changing this to "0" is the solution for me

View solution in original post

richgalloway
SplunkTrust
SplunkTrust

Edit the alert and in the "When triggered" section, under Send Email choose the desired elements to include in email.

richgalloway_0-1637775209869.png

 

---
If this reply helps you, Karma would be appreciated.

rrovers
Communicator

It looks different in my screen (maybe different version) but found this in "advanced search":

 

action.email.include.results_link

action.email.include.view_link

 
changing this to "0" is the solution for me
Get Updates on the Splunk Community!

Introducing the Splunk Community Dashboard Challenge!

Welcome to Splunk Community Dashboard Challenge! This is your chance to showcase your skills in creating ...

Built-in Service Level Objectives Management to Bridge the Gap Between Service & ...

Wednesday, May 29, 2024  |  11AM PST / 2PM ESTRegister now and join us to learn more about how you can ...

Get Your Exclusive Splunk Certified Cybersecurity Defense Engineer Certification at ...

We’re excited to announce a new Splunk certification exam being released at .conf24! If you’re headed to Vegas ...