My use case is that I want to select an event from a list and display more details about the event in another panel via drilldown. Some sort of ID (and ideally, indexed) would make it straightforward.
... View more
The logs are ingested and can be seen via SPL:
index=_internal sourcetype=splunkd component=sendmodalert action="{action}"
See http://docs.splunk.com/Documentation/Splunk/6.4.2/AdvancedDev/ModAlertsLog#Access_alert_action_script_logs
... View more