Alerting

Can I search the "Alert" information by search command ?

leo_wang
Path Finder

I want to search the "Alert" information, which is the new feature of splunk 4.2 , and display alerts in the dashboard by my way.

Could I do this by search command? and where is the alert information stored?

Leo Wang

Tags (1)
0 Karma

andilee
Explorer

Alerts are stored at:

| rest /services/alerts/fired_alerts splunk_server=local

As far as searching and reporting on alerts - I wish I knew!! I am looking for the same information, I want to create a summary dashboard for my alerts. I'll post here if I find any answers 😞

0 Karma
Get Updates on the Splunk Community!

Extending Observability Content to Splunk Cloud

Watch Now!   In this Extending Observability Content to Splunk Cloud Tech Talk, you'll see how to leverage ...

More Control Over Your Monitoring Costs with Archived Metrics GA in US-AWS!

What if there was a way you could keep all the metrics data you need while saving on storage costs?This is now ...

New in Observability Cloud - Explicit Bucket Histograms

Splunk introduces native support for histograms as a metric data type within Observability Cloud with Explicit ...