Hi,
I have created an alert and used splunk add on for Remedy to trigger incidents. Since I made few changes to API used based on our Remedy API the incidents are getting created but still in Splunk it shows "There are no fired events for this alert". May I know how this fired events are captured in splunk add on for remedy for alerts.
Thanks
Hi,
Could any one help here please? Much appreciated!
Thanks
Hi Sasivarnan,
Please note the following documented as a prerequisite on the Remedy side : http://docs.splunk.com/Documentation/AddOns/released/Remedy/Hardwareandsoftwarerequirements
For triggered alerts to successfully create new incidents for configuration items, you must configure incident rules and set the Consolidate Incidents option to No in BMC Remedy IT Service Management (ITSM). For information about configuring the Consolidate Incidents setting in the Remedy, refer to the related Remedy documentation:
https://docs.bmc.com/docs/display/public/BSR35/Consolidating+incidents
Hope this helps. Thanks!
Hunter
Hi Hunter,
Thanks for your reply. Actually the issue here is I am able to create an incident successfully when the event occurs but when I navigate into the splunk remedy app and in alerts view I am seeing "There are no fired events for this alert". But already an incident has been triggered for the event but splunk not recognizing it.
Attached the snapshot for reference.
Thanks
Also, make sure you have followed the instructions documented here:
http://docs.splunk.com/Documentation/AddOns/released/Remedy/Usecustomsearchcommands
Thanks!