Sumo Logic

Get alerts from Sumo Logic into Squadcast

Follow the steps below to configure a service so as to extract its related alert data from Sumo Logic.

Squadcast will then process this information to create incidents for this service as per your preferences.

Using Sumo Logic as an Alert Source

On the Sidebar, click on Services.

You can either choose to use existing service or create a new service

Now, click on the corresponding Alert Sources button.

Select Sumo Logic from Alert Source drop down and copy the Webhook URL shown.

Creating Squadcast Webhook in Sumo Logic

With Sumo Logic, the user will have to configure what the payload JSON will be.

So, for integrating with Squadcast, we have defined 2 different payload formats.

  • Log Alerts
  • Metric Alerts

So, we'll create 2 Webhook connections with different payload formats.

  1. Login to your sumo logic dashboard and go to the Settings tab in the Manage Data section.
  1. Select the Connections tab from the topbar.
  1. Click on + button.
  1. Select Webhook option.

  2. Add the Log Alerts webhook connection.

  • Paste the webhook URL copied from the Squadcast dashboard in the URL field.
  • In the payload field, past the following
{
    "type": "log",
    "searchName": "{ {SearchName}}",
    "searchDescription": "{ {SearchDescription}}",
    "searchQuery": "{ {SearchQuery}}",
    "searchQueryURL": "{ {SearchQueryUrl}}",
    "timeRange": "{ {TimeRange}}",
    "fireTime": "{ {FireTime}}",
    "aggregateResultsJson": "{ {AggregateResultsJson}}",
    "rawresultsJson": "{ {RawResultsJson}}",
    "numRawResults": "{ {NumRawResults}}"
}
  1. Similarly, add Metric Alerts webhook connection.
  • Paste the same webhook URL copied from the Squadcast dashboard in the URL field.
  • In the payload field, past the following
{
    "type": "metric",
    "searchName": "{ {SearchName}}",
    "searchDescription": "{ {SearchDescription}}",
    "searchQuery": "{ {SearchQuery}}",
    "searchQueryURL": "{ {SearchQueryUrl}}",
    "timeRange": "{ {TimeRange}}",
    "fireTime": "{ {FireTime}}",
    "alertThreshold": "{ {AlertThreshold}}",
    "alertSource": "{ {AlertSource}}",
    "alertID": "{ {AlertID}}",
    "alertStatus": "{ {AlertStatus}}"
}

Setting up Alerting for Logs

  • In the Alert Type drop-down, select Webhook.

  • In the Connection drop-down, select Squadcast Log Alerts.

Setting up Alerting for Metrics

  • In the Send Notification Via dropdown, select Squadcast Metric Alerts.

Now, whenever the webhook is triggered for either Log/Metric, an incident is autmatically created in Squadcast. But, the resolving of incident needs to be done manually by going to Squadcast dashboard.

Updated 3 months ago

Sumo Logic


Get alerts from Sumo Logic into Squadcast

Suggested Edits are limited on API Reference Pages

You can only suggest edits to Markdown body content, but not to the API spec.