All Apps and Add-ons

Reset Alert Manager Incidents / Database

Olli1919
Path Finder

Hi fellow Alert Manager Users,

what is a good way to clear out the alert manager incidents, to restart fresh? I am creating new tickets and still testing their content. After having finalized the ticket content, I would like to start out fresh again. Seeing that alert manager keeps incidents, their details and change history separately, also in index, kv and other places, they question is what should be cleared to get a clean new start.

Thanks!

Labels (2)
0 Karma
Get Updates on the Splunk Community!

Splunk Decoded: Service Maps vs Service Analyzer Tree View vs Flow Maps

It’s Monday morning, and your phone is buzzing with alert escalations – your customer-facing portal is running ...

What’s New in Splunk Observability – September 2025

What's NewWe are excited to announce the latest enhancements to Splunk Observability, designed to help ITOps ...

Fun with Regular Expression - multiples of nine

Fun with Regular Expression - multiples of nineThis challenge was first posted on Slack #regex channel ...