Skip to content

Splunk is a delivery channel for DAM Alerting: when a rule fires, ALTR forwards the alert to a Splunk HTTP Event Collector (HEC).

Connect Splunk from the notification integrations grid, the same as any other provider; see Notification Integrations for how to add, edit, test, and delete a connection. To set up the receiving side — creating and configuring an HEC token in Splunk — follow Splunk’s own HTTP Event Collector documentation.