All Apps and Add-ons

How do I configure new alerts in the Alert Manager app?

ssauler
New Member

How do I configure alerts in Alert Manager? After installing and setting up Alert Manager and its TA, the Alerts menu is empty without a "create" option. The Settings > Incident Settings page is empty as well.

The wiki page on this does not help. For me the seemingly only way is to use a sample alerts from the demo, cloning and editing it. I've tried this twice on fresh Splunk installs.

What am I doing wrong? Many thanks and all the best for the turn of the year!

0 Karma
1 Solution

jplumsdaine22
Influencer

I think this works with alerts you create normally. (ie from a search, Save As -> Alert)

See the docs: http://docs.alertmanager.info/Documentation/AlertManager/latest/AlertManager/AbouttheAlertManager, specifically the section "How does it work"

View solution in original post

0 Karma

jplumsdaine22
Influencer

I think this works with alerts you create normally. (ie from a search, Save As -> Alert)

See the docs: http://docs.alertmanager.info/Documentation/AlertManager/latest/AlertManager/AbouttheAlertManager, specifically the section "How does it work"

0 Karma

ssauler
New Member

Ah, thanks! I had an empty Splunk and only used the demo-app. Apparently the alerts created by the demo-app are not "real" alerts and leave the Incident Settings empty. With user-created alerts it works fine.

0 Karma
Career Survey
First 500 qualified respondents will receive a $20 gift card! Tell us about your professional Splunk journey.
Get Updates on the Splunk Community!

Tech Talk Recap | Mastering Threat Hunting

Mastering Threat HuntingDive into the world of threat hunting, exploring the key differences between ...

Observability for AI Applications: Troubleshooting Latency

If you’re working with proprietary company data, you’re probably going to have a locally hosted LLM or many ...

Splunk AI Assistant for SPL vs. ChatGPT: Which One is Better?

In the age of AI, every tool promises to make our lives easier. From summarizing content to writing code, ...