Splunk

Download 12
Last updated Jul 17, 2022

splunk-saved-searches

Get saved search list from Splunk server.

splunk-saved-searches [profile=PROFILE]
profile=PROFILE
The identifier of Splunk connect profile

Output Fields

FieldTypeNameDescription
profileStringConnect profileThe identifier of Splunk connect profile
nameStringName
descriptionStringDescription
disabledBoolDisabled
cron_scheduleStringCron schedule
next_scheduled_timeDateNext scheduled time
run_on_startupBoolRun on startup
searchStringSearchQuery string in SPL
alert_typeStringAlert typee.g. always, number of events
alert_severityIntegerAlert severitye.g. 1
alert_comparatorStringAlert comparatore.g. greater than
alert_thresholdStringAlert threshold
alert_suppressBoolAlert suppress
alert_suppress_fieldsStringAlert suppress fields
alert_suppress_periodStringAlert suppress periode.g. 60d
action_email_toStringEmail to
action_email_ccStringEmail cc
action_email_bccStringEmail bcc
action_email_subjectStringEmail subject
action_email_msgStringEmail message
action_email_formatStringEmail formate.g. table
updatedDateUpdated