Splunk AppDynamics

Business Transaction in Email Template

CommunityUser
Splunk Employee
Splunk Employee

On our SaaS controller, we're looking to create a health rule that checks all business transactions' average response times and trigger an email action based on baseline deviations. 

I'm creating an email template that I would like to include as much information as possible on what triggerd it.

Ideally we would like to see the specific business transaction that had a high response time in the email but I can't determine what the variable to use is.

We've created a template that will show the application, the severity, the name of the health rule, but can't seem to find information on specifics.

The health rule checks all business transactions, but if say "/default.aspx" is the BT that is experiencing higher than normal average response times, I'd like to have that listed in the email.

Any ideas or has anyone come across this?

Labels (3)
0 Karma
1 Solution

Yogesh_Chouk
Builder

Hi,


We understand that you want to have bt name in the alert. Can you add below variable to get the bt name in the alert.
${latestEvent.affectedEntities[0].name}
Please make sure that health rule tied to this Action is for Business transaction only as not every entity would be of type business transaction. Let us know how if it helps.

Thanks,

Yogesh

View solution in original post

0 Karma

Yogesh_Chouk
Builder

Hi,


We understand that you want to have bt name in the alert. Can you add below variable to get the bt name in the alert.
${latestEvent.affectedEntities[0].name}
Please make sure that health rule tied to this Action is for Business transaction only as not every entity would be of type business transaction. Let us know how if it helps.

Thanks,

Yogesh

0 Karma

CommunityUser
Splunk Employee
Splunk Employee

Are there any available documents or detailed list of what is available within affectedEntities or other available classes?

I found this document but it is very unclear and doesn't seem to list most available pieces of information:

https://docs.appdynamics.com/display/PRO45/Predefined+Templating+Variables

I'm now trying to show the specific measurement / metric that failed.

IE: if a health rule is triggering crtiical due to a BT average response time being below baseline, I'd like to have the subject show the BT and the measurement failure or detail this in the email body without using the standard template's 'eventMessage' since this has much more information in it that we wouldn't need on initial page of an issue.

We'd like to minimise some of the information and only have exact pieces that would help when someone is being woken up by a page. 

0 Karma
Career Survey
First 500 qualified respondents will receive a $20 gift card! Tell us about your professional Splunk journey.

Can’t make it to .conf25? Join us online!

Get Updates on the Splunk Community!

Take Action Automatically on Splunk Alerts with Red Hat Ansible Automation Platform

 Are you ready to revolutionize your IT operations? As digital transformation accelerates, the demand for ...

Calling All Security Pros: Ready to Race Through Boston?

Hey Splunkers, .conf25 is heading to Boston and we’re kicking things off with something bold, competitive, and ...

Beyond Detection: How Splunk and Cisco Integrated Security Platforms Transform ...

Financial services organizations face an impossible equation: maintain 99.9% uptime for mission-critical ...