Create
cancel
Showing results for 
Search instead for 
Did you mean: 
Sign up Log in
Celebration

Earn badges and make progress

You're on your way to the next level! Join the Kudos program to earn points and save your progress.

Deleted user Avatar
Deleted user

Level 1: Seed

25 / 150 points

Next: Root

Avatar

1 badge earned

Collect

Participate in fun challenges

Challenges come and go, but your rewards stay with you. Do more to earn more!

Challenges
Coins

Gift kudos to your peers

What goes around comes around! Share the love by gifting kudos to your peers.

Recognition
Ribbon

Rise up in the ranks

Keep earning points to reach the top of the leaderboard. It resets every quarter so you always have a chance!

Leaderboard

Come for the products,
stay for the community

The Atlassian Community can help you and your team get more value out of Atlassian products and practices.

Atlassian Community about banner
4,463,394
Community Members
 
Community Events
176
Community Groups

Show table results from Splunk in OpsGenie

We create alerts  with table results but when they send via the OPSGenie integration, we only see one row or its not cormatted as readable. Is there a way to solve this? 

1 answer

0 votes

Hi @heidi.rechek

I have looked at our documentation and can see no indication that sending a table is included in the default functionality,  could you please confirm if someone may have modified our plugin that is installed on your Splunk server?


Is the data from splunk to OpsGenie passed in json or a specific format? 

Is there a way to make it possible to pass tabled results through the integration? 

Hi @heidi.rechek

Sorry for the delay in response.  Yes, the payload sent from Splunk to Opsgeie is JSON.  If you are using Splunk Enterprise your admins will be able to access our Opsenie plugin, there is an opsgenie.py script that can be customized so customers can include additional functions to facilitate their use cases.  Your admins/developers will need to construct a logic in Splunk to export the table to a file, the extend the before mentioned opsgenie.py to include a function that triggers the Add Alert Attachment API call.

2 things to note is the above is not possible using the Splunk Cloud, you need to be running your own hosted version of Splunk Enterprize server, lastly please note the Opsgenie Support only supports the default functionality of each integration, if you do not have admin/developers who can handle the task please refer to an Atlassian partner in your local region. 

I hope this helps, thanks and kind regards,

Allen

Suggest an answer

Log in or Sign up to answer
DEPLOYMENT TYPE
CLOUD
TAGS

Atlassian Community Events