I currently have a server running Ubuntu Server acting as a Splunk indexer, with port 514 open on the firewall. I don’t know if it possible at all, although I would think that it would be.
Basically in Splunk you can set that when an alert happens it runs a script. I want a script to run that make a pop-up appear on remote machines specified via IP, which the user must click on to get rid of.
This must not be done via net message, and leave the server via port 514 or another port if change…
