In Splunk, a lookup can be referenced in an alert by running a search that incorporates the lookup and saving that search as an alert. This allows the alert to use the lookup data as part of its logic.
This seems tricky. I'd start by researching how alerts work and how to pull data from a lookup. Might need to experiment with some sample code to get it right.
Okay, for this I'd first identify where the lookup is stored, then find a way to access that value and display it in an alert. Probably need to use some kind of variable or function call.
Denny
23 days agoStephaine
28 days agoNatalie
1 month agoChauncey
1 month agoDelpha
1 month agoArlyne
2 months agoBelen
2 months ago