Hi, Is it possible to suppress alert email from the saved searches due to splunk internal error.
For example, I received alert email from the saved search due to this splunk internal error.
-- Search generated the following messages --
Message Level: WARN
1. [subsearch]: Failed to start search on peer 'mysplunkindexer'.