All Apps and Add-ons

Custom alert script in alert manager app

lexxx
Loves-to-Learn Lots

Good day!
A question of this nature: I have a Splunk cluster. The alert manager application is installed. There is a script for sending messages to the messenger. Is it possible through the application mechanisms to send an alert via a script when creating an incident? I searched through all the documentation of the application, and did not find how to do it...

Labels (3)
Tags (2)
0 Karma

impurush
Contributor

If I understand the question correctly, you need to trigger the alert through your scripts. If this is the case, then you can add the alert action as "Run a Script" and give your script name in the field name. Then you need place the script in any of the location  $SPLUNK_HOME/bin/scripts or $SPLUNK_HOME/etc/<app>/bin/scripts.

0 Karma

lexxx
Loves-to-Learn Lots

Not really. I need to make a script alert when an incident is generated in the alert manager application (https://splunkbase.splunk.com/app/2665/) . This is due to the fact that the application has a maintenance mode. This increases the convenience and informativeness of alerts.

0 Karma
Get Updates on the Splunk Community!

Splunk Training for All: Meet Aspiring Cybersecurity Analyst, Marc Alicea

Splunk Education believes in the value of training and certification in today’s rapidly-changing data-driven ...

Investigate Security and Threat Detection with VirusTotal and Splunk Integration

As security threats and their complexities surge, security analysts deal with increased challenges and ...

Observability Highlights | January 2023 Newsletter

 January 2023New Product Releases Splunk Network Explorer for Infrastructure MonitoringSplunk unveils Network ...