#openobserve

Understanding Alerts and Webhook Destinations in OpenObserve API

TLDR Mik inquired about alerts and their triggers and destination in the OpenObserve API. Ashish confirmed that other destinations are supported, showed how to verify when alerts are triggered, and discussed the variables currently available in the alert's template.

Powered by Struct AI

1

1

1

14
2mo
Solved
Join the chat
Oct 05, 2023 (2 months ago)
Mik
Photo of md5-831a5d6be712944970cc91a59491f238
Mik
01:43 AM
Hi, everyone. Just a few questions:
• How do I know if the alert that I've created is being triggered?
The documentation says that "Please note we only support slack webhook as destination for both kind of alerts." - I presume that I cannot create a custom endpoint for destination? (I've tested this in OpenObserve API, working for other destination)
Ashish
Photo of md5-9ed257a93c49bf4a991f872cc2ea4cda
Ashish
03:24 AM
Hi Mik
03:24
Ashish
03:24 AM
Yes we support any destination with webhook...our docs need update
03:25
Ashish
03:25 AM
To check if alert is triggered .there are two ways..in case condition is fulfilled you would receive a notification
03:26
Ashish
03:26 AM
What kind of deployment you have Single node or HA ...which type of alert did you create real time or scheduled?
03:26
Ashish
03:26 AM
For scheduled alert you can check alert manager logs
Mik
Photo of md5-831a5d6be712944970cc91a59491f238
Mik
06:39 AM
Thanks Ashish currently we have a single node setup. The problem is it seems that the condition that I've made for the alert isn't being triggered :thinking_face:

Could you please point me to the Alert manager logs, I can't locate it
Ashish
Photo of md5-9ed257a93c49bf4a991f872cc2ea4cda
Ashish
07:34 AM
since your is single node setup
07:34
Ashish
07:34 AM
the logs would be part of openobsrve log
07:34
Ashish
07:34 AM
in single node setup..same node plays all roles
Mik
Photo of md5-831a5d6be712944970cc91a59491f238
Mik
08:23 AM
Thanks a lot Ashish follow up question, is there a way that we can include other variable in the alert's template? something like the query and/or the condition of the alert

1

Ashish
Photo of md5-9ed257a93c49bf4a991f872cc2ea4cda
Ashish
08:24 AM
as of today nothing except : stream_name
org_name
alert_name
alert_type
timestamp
08:24
Ashish
08:24 AM
we have in plan to include more…

1

Mik
Photo of md5-831a5d6be712944970cc91a59491f238
Mik
08:25 AM
Thanks heaps!

1

OpenObserve

OpenObserve is an open-source, petabyte-scale observability platform for the cloud native realm, offering a 10x cost reduction and 140x less storage use compared to competitors like Elasticsearch or Splunk. Built in Rust for exceptional performance, it offers comprehensive features like logs, metrics, traces, dashboards, and more | Knowledge Base powered by Struct.AI

Indexed 404 threads (74% resolved)

Join Our Community