Getting Data In

Slack notification error code 1

Alicynx
New Member

I'm trying to get Slack alerts set on my Splunk Cloud instance but the test give me the following output:

04-14-2023 21:50:28.461 INFO  sendmodalert [11674 phase_1] - action=slack STDERR -  Slack API responded with HTTP status=200
04-14-2023 21:50:28.461 FATAL sendmodalert [11674 phase_1] - action=slack STDERR -  Alert action failed
04-14-2023 21:50:28.493 INFO  sendmodalert [11674 phase_1] - action=slack - Alert action script completed in duration=171 ms with exit code=1
04-14-2023 21:50:28.493 WARN  sendmodalert [11674 phase_1] - action=slack - Alert action script returned error code=1
04-14-2023 21:50:28.493 ERROR sendmodalert [11674 phase_1] - Error in 'sendalert' command: Alert script returned error code 1.
04-14-2023 21:50:28.494 INFO  ReducePhaseExecutor [11674 phase_1] - Ending phase_1

 

I can't find the meaning of error code 1 anywhere, and can't put this setup in debug to get more info from the deployment. Does anyone have an idea of what this code means so I can get this functional?

0 Karma

vn_g
Path Finder

Error Message : WARN sendmodalert [3050674 AlertNotifierWorker-0] - action=slack - Alert action script returned error code=1

 

Even I am getting the same error, Was this resolved? What was the fix?

What does this error mean? No documentation in git link as well.

Tags (1)
0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Where Innovation Takes Flight: The Splunk4Aviation Flight Sim Lands at .conf26

If you hear someone at .conf26 shouting "gear down, GEAR DOWN" across the show floor, you have found us.  The ...

Turn Cisco Telemetry Into Action with Cisco Data Fabric, powered by the Splunk ...

The surge in machine data is already hitting enterprise budgets, and the agentic era will only intensify it. ...

Persistent Queue at TcpOut — One of Splunk's Most Practical Features

Splunk introduced persistent queueing at the tcpout layer as one of the most practical resilience features in ...