Alerting

Splunk alerts have disappeared

aedelsteinpr
New Member

Our system has a few Splunk alerts set up and about a week ago, they all disappeared. They are not shown in the list of alerts inside Splunk and they are not carrying out their assigned actions.

If I try to create a new alert, it does not show up. I'll fill out the fields, save it, not see any error but then when I look at the list of alerts, it's not there:

alt text

However, it I try to create another alert with the same title as the alert I've just created, I receive an error, "Unable to create saved search with name [name]. A saved search with that name already exists."

Where are my alerts and how can I re-enable them? I'm using Splunk Enterprise v7.1.2.

0 Karma

somesoni2
Revered Legend

In the filters, for "App:" select all apps and try. Right now it's trying to look for alerts created in app "Home".

0 Karma
Get Updates on the Splunk Community!

Join Us for Splunk University and Get Your Bootcamp Game On!

If you know, you know! Splunk University is the vibe this summer so register today for bootcamps galore ...

.conf24 | Learning Tracks for Security, Observability, Platform, and Developers!

.conf24 is taking place at The Venetian in Las Vegas from June 11 - 14. Continue reading to learn about the ...

Announcing Scheduled Export GA for Dashboard Studio

We're excited to announce the general availability of Scheduled Export for Dashboard Studio. Starting in ...