Graylog 3.1 Alerts

I’ve just moved our Graylog server off of the old Graylog 2.5.1+34194da appliance and on to a new build from the group up on Graylog 3.1, is there anyone here would would be able to lend some insight into how to construct the “alerts” in the new system as they’re vastly different from the old version & is it possible to send a test email from the system to ensure the mail configuration is in fact in a working fashion? In the previous version (Graylog 2.5.1) I was able to send a test from the alert.

@SNerone
I just went into Event Definitions and create a Event. when you get to the section " Filter & Aggregation" you will notice Condition Type, there should be a drop down box and select " Filter & Aggregation". From there you select the stream and query. I have not configured the “Field” section yet. I left that default.
As for the Test Email notification button I believe its gone. I was unable to find it myslef

As for the Test Email notification button I believe its gone. I was unable to find it myslef

the upcoming 3.1.1 release will bring that button back.

how to construct the “alerts” in the new system

you might want to tune in: Graylog 3.1 New Features - Training

1 Like

Thanks, I printed out the “alerts” part of the Doc’s and went over that last night as well as setup a few testing notifications, I’ve been able to accomplish what I need to do so far. I really appreciate your response.

Thanks!

Thank you for the insight into the “test” button being added back in the next release… it would be nice as well to have a pause button on notifications, other than having to go into “event definitions” and remove the “notification” if you’re looking to “pause” the alerts, just dropping in my .02 on this. I will go over the “New Features” training.

Thank you!!

This topic was automatically closed 14 days after the last reply. New replies are no longer allowed.