Alerting

Why are there no results/unknown sid when set to real time alerts?

vetri
New Member

I have my splunk integrated with snow addon for incident creation, when set to real time receiving unknown sid in the alerts history and no tickets are getting generated but when set to 1 min scheduled window it's working fine with no issues.

could someone help me to understand what's the issue here please.

Labels (1)
0 Karma

c82507b
Engager

Hi colleague , Iam having this issue , were you able to resolve it?

0 Karma
Get Updates on the Splunk Community!

AI for AppInspect

We’re excited to announce two new updates to AppInspect designed to save you time and make the app approval ...

App Platform's 2025 Year in Review: A Year of Innovation, Growth, and Community

As we step into 2026, it’s the perfect moment to reflect on what an extraordinary year 2025 was for the Splunk ...

Operationalizing Entity Risk Score with Enterprise Security 8.3+

Overview Enterprise Security 8.3 introduces a powerful new feature called “Entity Risk Scoring” (ERS) for ...