Can I create a Scheduled Search in which multiple alerts can be sent based on ranges of results?
If log_count <1 Send "No logs received" message
If log_count > 10 Send "Runaway Process" message
This is not possible - for the above situation, two separate Scheduled Searches would be needed to be configured.
Please sign in to leave a comment.