Alerting

Unable to Remove Slack Alert From the Slack Alerts Configuration Page

Simon1
Engager

Hi,

I mistakenly cloned an alert to the "Slack Alerts" app instead of the normal "Search & Reporting" app. 

This alert is functioning and sending Slack messages when triggered. But the alert is in the wrong app.

But worse is that the alert now appears in the "All Configurations" page.

I am able to disable the alert but not able to remove it and I really need to remove it from the "All Configurations" page. I'm also not able to edit the alert in any way.

Is it possible to remove the alert from the "All Configurations" page?

RemoveSplunkSlackAlert.png

 

Thank you.

Labels (2)
0 Karma
1 Solution

SanjayReddy
SplunkTrust
SplunkTrust

Hi @Simon1 

I feel there is not direct way to change the app context in UI also you are using splunk cloud.

otherway is go to searches reports and alerts from settings 

SanjayReddy_0-1701139898383.png

from their click on edit alet and clone 

SanjayReddy_1-1701139971532.png

then you can change the app context  and , once clone the alert delete the alert with app in slack context

SanjayReddy_2-1701139998753.png

 

View solution in original post

0 Karma

Simon1
Engager

Hi @SanjayReddy ,

That worked!

I was able to go to Searches Reports & Alerts from settings and delete the alert from there.

Thank you so much for your help!

0 Karma

SanjayReddy
SplunkTrust
SplunkTrust

Hi @Simon1 

I feel there is not direct way to change the app context in UI also you are using splunk cloud.

otherway is go to searches reports and alerts from settings 

SanjayReddy_0-1701139898383.png

from their click on edit alet and clone 

SanjayReddy_1-1701139971532.png

then you can change the app context  and , once clone the alert delete the alert with app in slack context

SanjayReddy_2-1701139998753.png

 

0 Karma
Get Updates on the Splunk Community!

Upcoming Webinar: Unmasking Insider Threats with Slunk Enterprise Security’s UEBA

Join us on Wed, Dec 10. at 10AM PST / 1PM EST for a live webinar and demo with Splunk experts! Discover how ...

.conf25 technical session recap of Observability for Gen AI: Monitoring LLM ...

If you’re unfamiliar, .conf is Splunk’s premier event where the Splunk community, customers, partners, and ...

A Season of Skills: New Splunk Courses to Light Up Your Learning Journey

There’s something special about this time of year—maybe it’s the glow of the holidays, maybe it’s the ...