1. IMR Help
  2. Integrations
  3. Graylog v4 Integration Guide
  1. IMR Help
  2. Integrations
  3. Graylog v4 Integration Guide

Graylog v4 Integration Guide

Graylog is a leading centralized log management solution built to open standards for capturing, storing, and enabling real-time analysis of terabytes of machine.

What can Xurrent IMR do for Graylog v4 users?

With the new Graylog Integration, Xurrent IMR sends new Gralog conditional alerts to the right team and notifies them based on on-call schedules via email, text messages(SMS), phone calls(Voice), Slack, Microsoft Teams and iOS & Android push notifications, and escalates alerts until the alert is acknowledged or closed. Xurrent IMR provides your application engineers with detailed context around the Graylog alert along with playbooks and a complete incident command framework to triage and remediate and resolve incidents with speed.

Whenever a condition on Graylog is met, Xurrent IMR will create an incident.

You can also use Alert Rules to custom route specific Graylog alerts to specific users, teams or escalation policies, write suppression rules, auto add notes, responders and incident tasks.

This intergation is for the newer version (v4) of Graylog, for the older version of Graylog, please click

  1. Test the Notification, and save the Notification after whitelisting the URL (If Non-Whitelisted URLs aren't allowed.)
  2. Select Event Definition from the menu and Either create a new Event or select a pre-existing event for the Notification to be added to.
  3. Click on Notifications in the New Event Definition.
  4. Click on Add Notification. Select the previously created Xurrent IMR Integration under the Notification drop-down list.

.

To integrate Graylog v4 with Xurrent IMR, complete the following steps:

In Xurrent IMR:

  1. To add a new Graylog integration, go to Teams on Xurrent IMR and click on the team you want to add the integration to.
  2. Next, go to Services and click on the relevant Service.
  3. Go to Integrations and then Add New Integration. Give it a name and select the application Graylog V4 from the dropdown menu.
  4. Go to Configure under your Integrations and copy the Webhook URL generated.

In Graylog:

  1. Log in to Graylog. Go to Alert -> Notification and create a new notification.
  2. Name the notification as you desire and Select HTTP Notification under the Notification Type drop-down menu.
    In the URL, paste the webhook that was previously copied.
  1. Finish the Event definition for your specified Event.
  2. Graylog is now integrated and Xurrent IMR will create incidents from the alerts.