My rules:



*full_message must match regular expression authentication failfull_message 
must match regular expression invalid userfull_message must match regular 
expression AAA-W-REJECT*Email Callback config:
















*##########Alert Description: ${check_result.resultDescription}Date: 
${check_result.triggeredAt}Stream ID: ${stream.id}Stream title: 
${stream.title}Stream description: ${stream.description}${if 
stream_url}Stream URL: ${stream_url}${end}Triggered condition: 
${check_result.triggeredCondition}##########${if backlog}Last messages 
accounting for this alert:${foreach backlog 
message}${message}${end}${else}<No backlog>${end}*

The red part seems to fall into the "else" section resulting just <No 
Backlog> in the sent email.



On Wednesday, May 25, 2016 at 4:37:03 PM UTC+2, Jochen Schalanda wrote:
>
> Hi,
>
> without additional information about your alerting setup (e. g. the 
> specific alert condition, the messages supposedly matching those 
> conditions, and your email alert template) we cannot possibly help you.
>
> Cheers,
> Jochen
>
> On Wednesday, 25 May 2016 16:34:06 UTC+2, Saeed wrote:
>>
>> Does anybody know why do I don't get the content of syslog in the alert 
>> email ?
>> Instead I just see *<No backlog> *for the syslog message.
>>
>

-- 
You received this message because you are subscribed to the Google Groups 
"Graylog Users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to [email protected].
To view this discussion on the web visit 
https://groups.google.com/d/msgid/graylog2/2fe6e975-94c4-4126-929b-4b71edff8bbe%40googlegroups.com.
For more options, visit https://groups.google.com/d/optout.

Reply via email to