All Apps and Add-ons

Custom alert script in alert manager app

lexxx
Loves-to-Learn

Good day!
A question of this nature: I have a Splunk cluster. The alert manager application is installed. There is a script for sending messages to the messenger. Is it possible through the application mechanisms to send an alert via a script when creating an incident? I searched through all the documentation of the application, and did not find how to do it...

Labels (3)
Tags (2)
0 Karma

impurush
Contributor

If I understand the question correctly, you need to trigger the alert through your scripts. If this is the case, then you can add the alert action as "Run a Script" and give your script name in the field name. Then you need place the script in any of the location  $SPLUNK_HOME/bin/scripts or $SPLUNK_HOME/etc/<app>/bin/scripts.

0 Karma

lexxx
Loves-to-Learn

Not really. I need to make a script alert when an incident is generated in the alert manager application (https://splunkbase.splunk.com/app/2665/) . This is due to the fact that the application has a maintenance mode. This increases the convenience and informativeness of alerts.

0 Karma
.conf21 CFS Extended through 5/20!

Don't miss your chance
to share your Splunk
wisdom in-person or
virtually at .conf21!

Call for Speakers has
been extended through
Thursday, 5/20!