---
title: "Alert Actions"
canonical: "https://docs.infoblox.com/space/DeploymentGuideInfobloxAppforSplunk/1720877121/Alert%20Actions"
format: markdown
---
This application contains the following alert actions:

### Get Infoblox IQ for Threat Defense Details

This alert action collects additional data for IQ for Threat Defense Detail. It can poll data at scheduled intervals or be triggered on demand

Parameters:

- assets: Collect IQ for Threat Defense Assets data.
- indicators: Collect IQ for Threat Defense Indicators data.
- events: Collect IQ for Threat Defense Events data.
- index: Select the index in which the data should be collected.
- global_account: Select the Infoblox account for which you want to collect data.

### Enabling Alert Action for IQ for Threat Defense

To enable the alert action follow the given steps:

1. Go to Settings, then click Searches, reports, and alerts under Knowledge.

![image-20251008-131725.png](media://24880415-bc18-455c-9630-41ff0a92820e)


2. Change the owner to All and look for Get Infoblox SOC Insights details.

![image-20251008-132003.png](media://2e6681a6-2167-4558-95c9-22a51954da93)

3. Click Edit, then Edit Alert.

![image-20251008-132115.png](media://2c20fcf9-8f68-42b5-977a-bb6bc854df1f)

4. Set a schedule for the alert, then in Trigger Actions, select the required details, index name, and Infoblox Account. Click Save.

![image-20260827-143411.png](media://183c846a-2918-4e82-b9ea-ae5e372320e4)

5. Click Edit and the Enable the alert to run on schedule.

![image-20251008-132316.png](media://e66aef2d-595f-4f8f-80cb-def221789497)