Alerting

Why are my Alerts not working?

Nehal259
New Member

I created an alert on scheduled job whenever the count is greater than 1. It is supposed to trigger an alert but it is not triggering. Can someone help me with this 

Labels (2)
0 Karma

ITWhisperer
SplunkTrust
SplunkTrust

Which version of splunk are you using as there have been issues with this - sometimes it is best to include the condition in the search itself e.g. "| where count>1" and then trigger on non-zero results

0 Karma

Nehal259
New Member

I have kept the same settings but still alerts are not triggering in the given time

 

0 Karma
Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Dynamic formatting from XML events

This challenge was first posted on Slack #puzzles channelFor a previous puzzle, I needed a set of fixed-length ...

Enter the Agentic Era with Splunk AI Assistant for SPL 1.4

  🚀 Your data just got a serious AI upgrade — are you ready? Say hello to the Agentic Era with the ...

Stronger Security with Federated Search for S3, GCP SQL & Australian Threat ...

Splunk Lantern is a Splunk customer success center that provides advice from Splunk experts on valuable data ...