Create
cancel
Showing results for 
Search instead for 
Did you mean: 
Sign up Log in

Opsgenie/Splunk integration

Alexey SHALYGIN May 15, 2019

Hello,

 

I’d like to know if anyone was able to integrate OpsGenie with the last version of Splunk (7.2.*).

 

We use Splunk 7.2.5 and Splunk Enterprise Security 5.2.2 and we’d like to automatically create an alert in OpsGenie whenever an alert is created in Splunk.

 

We've installed OpsGenie Splunk app, but it looks pretty obsolete (last version published Oct. 31, 2017) and doesn’t seem to work correctly:

  • In Splunk you can add OpsGenie as a response action, but you can’t manage any detail, like alert priority, etc.

Screenshot 2019-05-15 at 16.19.59.png

  • In Splunk Enterprise Security there is no OpsGenie action in the response action list at all.

 

Do you have any advice for us?

 

Thanks for the help.

 

Alex.

3 answers

1 accepted

0 votes
Answer accepted
Samir
Atlassian Team
Atlassian Team members are employees working across the company in a wide variety of roles.
May 17, 2019

Hi Alex - It looks like the Opsgenie app has not been officially "approved" to work on Splunk v7.2.5, but we should be able to get it to work with that version. If you can reach out to our support team either through the in-app chat support (blue bubble in bottom right corner when logged into Opsgenie), or by submitting a ticket to us at https://support.atlassian.com/ or emailing support@opsgenie.com, we should be able to work with you on getting it setup.

Alexey SHALYGIN May 20, 2019

Hello Samir,

 

Actually, I'm already in contact with support team, but it looks like they have some difficulties to reach the engineering team. I've asked the same question back in February and make a recall every ~2 weeks, but unfortunately we wasn't able to make any progress with support.

 

I'll try to submit a ticket at https://support.atlassian.com/

 

Thanks for the help.

0 votes
Brad Collins June 11, 2019

You can try reaching out ZigiWave, as they're having a lot of integrations as far as I remember. Their website is https://zigiwave.com. GL!

Alexey SHALYGIN June 11, 2019

Hello Brad,

 

Appreciate your help!

 

ZigiWave provide integration with Splunk, but not with the Splunk Enterprise Security. With Atlassian support we were able to find a way to synchronise OpsGenie with Splunk 7.2.*; not the easiest one, but it works. Unfortunately, it's still impossible to synchronise OpsGenie with Enterprise Security (which was our main wish).

Brad Collins June 24, 2019

Thanks for the update Alexey. I'm glad that you were able to achieve this even if not in the easiest way.

0 votes
Alexey SHALYGIN May 20, 2019

.

Suggest an answer

Log in or Sign up to answer
TAGS
AUG Leaders

Atlassian Community Events