All Apps and Add-ons

Multiple Opsgenie integrations in same Splunk

rensvanleeuwen
New Member

Hello,

we'd like to have multiple Opsgenie integrations in the same Splunk instance. The current integration only allows for a single installation and you can therefore only set a single API key. It also comes with a predefined name for the integration.

The use case that we have, is that we need to send alerts to different organisations in Opsgenie. We'd like an ability to differentiate, so when a user creates an alert, he/she can select from different Opsgenie integrations that then end up in one or more Opsgenie accounts.

Thanks,

Rens,Hello,

currently the Splunk/Opsgenie integration app can only be installed once. It therefore also only allows a single API key to be provided, and it comes with a predefined name.

We are looking for ways to have multiple Opsgenie integrations, that each can have a different API key and a different name. This would make it easier for people that create alerts to select a preconfigured Opsgenie integration that ends up on a different account.

Is the code for the Opsgenie integration open source? In other words: can we open a PR that would include this functionality?

Thanks,

Rens van Leeuwen

0 Karma

burwell
SplunkTrust
SplunkTrust

@rensvanleeuwen Hello. Did you ever find a solution for this problem?

0 Karma

rensvanleeuwen
New Member

Hello @burwell ,

I forgot about this message as it was sent during my holidays. Sorry for the delay.

We worked around this problem by doing the routing on the side of OpsGenie instead. It has been a while and I do not have access to the systems anymore, but I believe we used an OpsGenie → OpsGenie forwarder based on the contents of the payload.

Rens

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Persistent Queue at TcpOut — One of Splunk's Most Practical Features

Splunk introduced persistent queueing at the tcpout layer as one of the most practical resilience features in ...

Skip the Awkward Silence: Have a .conf-ersation at .conf26

Picture this. You arrive at .conf26 already having your socializing and networking plans mapped out. No ...

Rethinking Zero Trust: From Product Purchases to Logical Control Evidence

Implementing Zero Trust (ZT) across complex environments often falters at the very beginning due to a ...