My rules:
*full_message must match regular expression authentication failfull_message
must match regular expression invalid userfull_message must match regular
expression AAA-W-REJECT*Email Callback config:
*##########Alert Description: ${check_result.resultDescription}Date:
${check_result.triggeredAt}Stream ID: ${stream.id}Stream title:
${stream.title}Stream description: ${stream.description}${if
stream_url}Stream URL: ${stream_url}${end}Triggered condition:
${check_result.triggeredCondition}##########${if backlog}Last messages
accounting for this alert:${foreach backlog
message}${message}${end}${else}<No backlog>${end}*
The red part seems to fall into the "else" section resulting just <No
Backlog> in the sent email.
On Wednesday, May 25, 2016 at 4:37:03 PM UTC+2, Jochen Schalanda wrote:
>
> Hi,
>
> without additional information about your alerting setup (e. g. the
> specific alert condition, the messages supposedly matching those
> conditions, and your email alert template) we cannot possibly help you.
>
> Cheers,
> Jochen
>
> On Wednesday, 25 May 2016 16:34:06 UTC+2, Saeed wrote:
>>
>> Does anybody know why do I don't get the content of syslog in the alert
>> email ?
>> Instead I just see *<No backlog> *for the syslog message.
>>
>
--
You received this message because you are subscribed to the Google Groups
"Graylog Users" group.
To unsubscribe from this group and stop receiving emails from it, send an email
to [email protected].
To view this discussion on the web visit
https://groups.google.com/d/msgid/graylog2/2fe6e975-94c4-4126-929b-4b71edff8bbe%40googlegroups.com.
For more options, visit https://groups.google.com/d/optout.