Splunk IT Service Intelligence

Splunk IT Service Intelligence: How can I setup Email Alerts for individual KPIs or total "Service Health"?

r34220
Explorer

How can I setup Email Alerts for individual KPIs or total "Service Health" on Splunk IT Service Intelligence (ITSI)?

0 Karma
1 Solution

rossl_splunk
Splunk Employee
Splunk Employee

You first want to create a Multi-KPI-Alert. You can read about that at http://docs.splunk.com/Documentation/ITSI/2.4.1/User/CreateMulti-KPIAlerts

Once you create the alert you can configure email alerting by doing the following:

  1. Go to the navigation bar and select configure->correlation searches.
  2. Find the Multi-KPI-Alert that you just created
  3. Press Edit->By correlation search editor
  4. Expand the "Advanced Options" panel.
  5. Check "Send email"
  6. Fill out the required fields for the email action.
  7. Save

View solution in original post

rossl_splunk
Splunk Employee
Splunk Employee

You first want to create a Multi-KPI-Alert. You can read about that at http://docs.splunk.com/Documentation/ITSI/2.4.1/User/CreateMulti-KPIAlerts

Once you create the alert you can configure email alerting by doing the following:

  1. Go to the navigation bar and select configure->correlation searches.
  2. Find the Multi-KPI-Alert that you just created
  3. Press Edit->By correlation search editor
  4. Expand the "Advanced Options" panel.
  5. Check "Send email"
  6. Fill out the required fields for the email action.
  7. Save
Get Updates on the Splunk Community!

Stay Connected: Your Guide to May Tech Talks, Office Hours, and Webinars!

Take a look below to explore our upcoming Community Office Hours, Tech Talks, and Webinars this month. This ...

They're back! Join the SplunkTrust and MVP at .conf24

With our highly anticipated annual conference, .conf, comes the fez-wearers you can trust! The SplunkTrust, as ...

Enterprise Security Content Update (ESCU) | New Releases

Last month, the Splunk Threat Research Team had two releases of new security content via the Enterprise ...