Alerting

Alert Manager Enterprise doesn't work.

rolypolytoyy
Explorer

I was referring to this video

https://www.youtube.com/watch?v=Dv_lp-aHnv8

 

but no events found at the event summary page. 

rolypolytoyy_0-1701073269398.png

 

 

this is setup and Migration page.

rolypolytoyy_1-1701073336513.png

I installed Splunk in a local environment, so I filled HEC Host and Port with default values(localhost, 8088). 

Please tell me if I'm doing something wrong. 

Labels (2)
Tags (1)
0 Karma
1 Solution

gcusello
SplunkTrust
SplunkTrust

Hi @rolypolytoyy,

there's a requirement for the alerts to be visible in Alert Manager: Alerts must have a Global condivision level, otherwise they aren't visible.

Are you alert shared at Global level?

Ciao.

Giueppe

View solution in original post

gcusello
SplunkTrust
SplunkTrust

Hi @rolypolytoyy,

there's a requirement for the alerts to be visible in Alert Manager: Alerts must have a Global condivision level, otherwise they aren't visible.

Are you alert shared at Global level?

Ciao.

Giueppe

rolypolytoyy
Explorer

I really thanks for your response!

But I solved the problem with other solution. The solution is below

https://community.splunk.com/t5/Splunk-Enterprise/Alert-manager-enterprise-Creation-of-events-in-ind...

0 Karma

gcusello
SplunkTrust
SplunkTrust

Hi @rolypolytoyy ,

good for you, see next time!

let me know if I can help you more, or, please, accept one answer for the other people of Community.

Ciao and happy splunking

Giuseppe

P.S.: Karma Points are appreciated 😉

Get Updates on the Splunk Community!

Fun with Regular Expression - multiples of nine

Fun with Regular Expression - multiples of nineThis challenge was first posted on Slack #regex channel ...

[Live Demo] Watch SOC transformation in action with the reimagined Splunk Enterprise ...

Overwhelmed SOC? Splunk ES Has Your Back Tool sprawl, alert fatigue, and endless context switching are making ...

What’s New & Next in Splunk SOAR

Security teams today are dealing with more alerts, more tools, and more pressure than ever.  Join us on ...