All Apps and Add-ons

How do I configure new alerts in the Alert Manager app?

ssauler
New Member

How do I configure alerts in Alert Manager? After installing and setting up Alert Manager and its TA, the Alerts menu is empty without a "create" option. The Settings > Incident Settings page is empty as well.

The wiki page on this does not help. For me the seemingly only way is to use a sample alerts from the demo, cloning and editing it. I've tried this twice on fresh Splunk installs.

What am I doing wrong? Many thanks and all the best for the turn of the year!

0 Karma
1 Solution

jplumsdaine22
Influencer

I think this works with alerts you create normally. (ie from a search, Save As -> Alert)

See the docs: http://docs.alertmanager.info/Documentation/AlertManager/latest/AlertManager/AbouttheAlertManager, specifically the section "How does it work"

View solution in original post

0 Karma

jplumsdaine22
Influencer

I think this works with alerts you create normally. (ie from a search, Save As -> Alert)

See the docs: http://docs.alertmanager.info/Documentation/AlertManager/latest/AlertManager/AbouttheAlertManager, specifically the section "How does it work"

0 Karma

ssauler
New Member

Ah, thanks! I had an empty Splunk and only used the demo-app. Apparently the alerts created by the demo-app are not "real" alerts and leave the Incident Settings empty. With user-created alerts it works fine.

0 Karma
Get Updates on the Splunk Community!

Splunk at Cisco Live 2025: Learning, Innovation, and a Little Bit of Mr. Brightside

Pack your bags (and maybe your dancing shoes)—Cisco Live is heading to San Diego, June 8–12, 2025, and Splunk ...

Splunk App Dev Community Updates – What’s New and What’s Next

Welcome to your go-to roundup of everything happening in the Splunk App Dev Community! Whether you're building ...

The Latest Cisco Integrations With Splunk Platform!

Join us for an exciting tech talk where we’ll explore the latest integrations in Cisco + Splunk! We’ve ...