Alerting

How to change Alert type

chensteven
New Member

Hello,

On Splunk cloud dashboard alert setup, how I can setup the alert email to be sent as soon as the incident occurs? is it possible change the "Alert type" from Scheduled to other type? All I can do seems to be setup a schedule only. Please help. Thank you.

Tags (2)
0 Karma

richgalloway
SplunkTrust
SplunkTrust

Alerts go out as soon as the incident is detected. How long that takes depends on how long it takes for the incident to make its way into Splunk and also on how often the alert runs. Plus there's the latency in delivering the alert email.

I think your best option is to make the alert run more often, as long as it is able to complete before the next run time.

---
If this reply helps you, Karma would be appreciated.
0 Karma
Get Updates on the Splunk Community!

Extending Observability Content to Splunk Cloud

Watch Now!   In this Extending Observability Content to Splunk Cloud Tech Talk, you'll see how to leverage ...

More Control Over Your Monitoring Costs with Archived Metrics GA in US-AWS!

What if there was a way you could keep all the metrics data you need while saving on storage costs?This is now ...

New in Observability Cloud - Explicit Bucket Histograms

Splunk introduces native support for histograms as a metric data type within Observability Cloud with Explicit ...