splunkbot9000 / splunk_app_pagerduty

PagerDuty Alert - Trigger PagerDuty Incidents from Splunk Alerts.

Home Page:https://splunkbase.splunk.com/app/2912/

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

Usage Overview

  1. Download & Install Splunk.
  2. Create a PagerDuty Service Integration API Key.
  3. Install this App.
  4. Set PagerDuty API Key.
  5. Enable Alert.

Detailed Usage

Phase I - Install & Configure App

  1. Download & Install Splunk.

  2. From Splunk, select Apps and click Find More Apps:
    https://raw.githubusercontent.com/ampledata/splunk_app_pagerduty/develop/docs/find_more_apps.png
  3. Search for 'pagerduty':
    https://raw.githubusercontent.com/ampledata/splunk_app_pagerduty/develop/docs/search_apps.png
  4. Restart Splunk:
    https://raw.githubusercontent.com/ampledata/splunk_app_pagerduty/develop/docs/restart_splunk.png
  5. From Splunk, select Apps and click Manage Apps:
    https://raw.githubusercontent.com/ampledata/splunk_app_pagerduty/develop/docs/find_more_apps.png
  6. Locate 'PagerDuty Alerts' and click 'Set up':
    https://raw.githubusercontent.com/ampledata/splunk_app_pagerduty/develop/docs/app_set_up.png
  7. Enter your PagerDuty Integration API Key and click Save:
    https://raw.githubusercontent.com/ampledata/splunk_app_pagerduty/develop/docs/service_api_key.png https://raw.githubusercontent.com/ampledata/splunk_app_pagerduty/develop/docs/successfully_updated.png

Phase II - Enable Alert

  1. From Splunk, search for a term and click Save As - Alert:
    https://raw.githubusercontent.com/ampledata/splunk_app_pagerduty/develop/docs/new_search.png
  2. Pick a name and schedule for the alert:
    https://raw.githubusercontent.com/ampledata/splunk_app_pagerduty/develop/docs/save_as_alert.png
  3. Click 'Run a Script' and enter 'pagerduty.py', then click 'Save':
    https://raw.githubusercontent.com/ampledata/splunk_app_pagerduty/develop/docs/run_a_script.png https://raw.githubusercontent.com/ampledata/splunk_app_pagerduty/develop/docs/alert_has_been_saved.png
  4. Add pd_key field to search results using a lookup or other function to use dynamic escalation

  1. Enjoy having Splunk Alerts delivered to PagerDuty!

Author

Contributors

See CONTRIBUTORS.rst

Copyright

Copyright 2014 OnBeep, Inc., 2015 Orion Health Inc.

License

Apache License, Version 2.0

See LICENSE

About

PagerDuty Alert - Trigger PagerDuty Incidents from Splunk Alerts.

https://splunkbase.splunk.com/app/2912/

License:Other


Languages

Language:Python 82.3%Language:Makefile 16.0%Language:Ruby 1.7%