Splunk On-Call incident triggered

trigger

This trigger fires when a Splunk On-Call incident is triggered for the first time.

Event

alert
Optional
object
The alert data
alert.ack_author
Optional
string
The username of the person who acknowledged the incident
alert.alert_type
Optional
string
alert.created_by
Optional
string
The username of the person who created the incident
alert.entity_display_name
Optional
string
The title of the incident
alert.entity_id
Optional
string
The internal Splunk On-Call ID of the entity; used for associating updates with an incident
alert.entity_state
Optional
string
alert.is_vo_ack
Optional
string
alert.message_type
Optional
string
alert.monitor_name
Optional
string
alert.monitoring_tool
Optional
string
alert.notificationtype
Optional
string
alert.state_message
Optional
string
Longform body of the message
alert.state_start_time
Optional
string
alert.timestamp
Optional
string
alert.timet
Optional
string
alert.vo_alert_rcv_time
Optional
string
Timestamp at which the alert was received by Splunk On-Call
alert.vo_monitor_type
Optional
string
alert.vo_organization_id
Optional
string
The Splunk On-Call organization ID
alert.vo_uuid
Optional
string

Join our community

We’re excited to see and share in our community’s creation. Take a look at our community overview to learn how to begin contributing to Relay.