Quick Start
This guide provides a quick overview of the steps required to set up Alert Manager Enterprise (AME) in your Splunk environment. It assumes you are familiar with Splunk concepts such as indexes, HEC tokens, and alert actions. For detailed instructions, see the Setup Guide.
Before installing or upgrading AME, review the Versioning and Before You Upgrade guides to ensure smooth day-two operations.
Splunk Enterprise
This guide outlines the steps to set up Alert Manager Enterprise (AME) on a single-instance or single Search Head Splunk Enterprise environment:
- Create an index named
ame_default
. - Generate a HEC token with write permissions for the
ame_default
index. - Install Alert Manager Enterprise from Splunkbase by downloading the app or using in-product installation.
- Complete the AME Setup Page.
- Create an alert and configure an Alert Action.
- Verify incoming events in the Event Summary.
Splunk Cloud
- Create an index named
ame_default
. - Generate a HEC token with write permissions for the
ame_default
index. - Install Alert Manager Enterprise using the in-product installation.
- Complete the AME Setup Page.
- Create an alert and configure an Alert Action.
- Verify incoming events in the Event Summary.
Watch also our Setup Video.