Alerting

Issue in integrating Splunk alert with Slack

juhisaxena28
Explorer

We are trying to send data from Splunk to Slack via Trigger actions-- Add Actions method. Further we are entering the slack channel name and message. But we are not getting the alerts via slack. Please advise.

0 Karma

DavidHourani
Super Champion

Hi @juhisaxena28,

There are a lot of apps that allow you to send notifications and alerts to Slack. Personally I prefer this one :
https://splunkbase.splunk.com/app/2878/

Some description on how to use it can be found here:
https://answers.splunk.com/answers/351316/slack-notification-alert-how-can-i-get-the-message-1.html

you could also use this if you prefer, either works :
https://splunkbase.splunk.com/app/3525/

Cheers,
David

0 Karma

Vijeta
Influencer

@juhisaxena28 are you using Slack Webhook Alert TA? Have you configured the Account with Webhook name and URL?

0 Karma

juhisaxena28
Explorer

We are using Trigger actions option and selecting Slack dropdown as an option while editing the saved search.

0 Karma

Vijeta
Influencer

You might want to use Slack Webhook Alert add-on, once its configured correctly, you can select Slack webhook from Trigger actions dropdown in your saved search.

0 Karma
Get Updates on the Splunk Community!

Splunk MCP & Agentic AI: Machine Data Without Limits

  Discover how the Splunk Model Context Protocol (MCP) Server can revolutionize the way your organization ...

Finding Based Detections General Availability

Overview  We’ve come a long way, folks, but here in Enterprise Security 8.4 I’m happy to announce Finding ...

Get Your Hands Dirty (and Your Shoes Comfy): The Splunk Experience

Hands-On Learning and Technical Seminars  Sometimes, you just need to see the code. For those looking for a ...