-
Type:
Suggestion
-
Resolution: Unresolved
-
Component/s: Integrations - 3rd-party - Splunk
-
None
-
10
User Problem
In the current design, there can only be 1 Splunk App installed to a Splunk instance, and for the Essentials/Free Opsgenie, it doesn't provide flexibility for integrating multiple teams (via multiple Splunk integrations) with the same Splunk instance.
It would be great to have the Splunk App support multiple API keys from different Splunk integrations to control what responders/teams will receive the alert from the Splunk side.
Suggested Solutions
Have the Splunk App support filling in multiple API Keys from different Splunk integrations.
Current Workarounds
On Standard/Enterprise Opsgenie, switch the Splunk integration to be assigned to "No Team", and please add multiple Create Alert rules on the same Splunk integration to match the patterns and assign the alerts to different teams in the Responders field.
No available workaround for Essentials/Free Opsgenie.
- mentioned in
-
Page Loading...