Alerting

search query in-order to find a Rest API down

geethujosey
New Member

I have a requirement to write a search query when the REST API got down and need to send an email alert for the same. Can anyone help me to do the search query as i am new to splunk.

0 Karma

renjith_nair
Legend

Do you have the events of "down" in splunk or do you need to explicitly call the rest endpoint to see if it works?

---
What goes around comes around. If it helps, hit it with Karma 🙂
0 Karma

geethujosey
New Member

Hi renjith, need to explicitly call the rest endpoint to see if it works?

0 Karma

renjith_nair
Legend

You could use https://splunkbase.splunk.com/app/1546/ and forward the result to Splunk. Once this is done, you could search the splunk events, you could look for unexpected errors and alert

---
What goes around comes around. If it helps, hit it with Karma 🙂
0 Karma
Get Updates on the Splunk Community!

Detecting Remote Code Executions With the Splunk Threat Research Team

WATCH NOWRemote code execution (RCE) vulnerabilities pose a significant risk to organizations. If exploited, ...

Enter the Splunk Community Dashboard Challenge for Your Chance to Win!

The Splunk Community Dashboard Challenge is underway! This is your chance to showcase your skills in creating ...

.conf24 | Session Scheduler is Live!!

.conf24 is happening June 11 - 14 in Las Vegas, and we are thrilled to announce that the conference catalog ...