Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[RFE] Add option to not deploy a detector #548

Open
haedri opened this issue Feb 12, 2024 · 0 comments
Open

[RFE] Add option to not deploy a detector #548

haedri opened this issue Feb 12, 2024 · 0 comments
Labels
new feature Request for new feature templating About modules templating or terraform capabilities

Comments

@haedri
Copy link
Contributor

haedri commented Feb 12, 2024

Is your feature request related to a problem? Please describe.
It is easy at the moment to disable a detector, but not to avoid deploying it.
So a lot of detectors are deployed with disabled alert rules.
Furthermore Splunk currently has issues with disabled alert rules that still randomly trigger, so not deploying the detector altogether would be a good solution

Describe the solution you'd like
Make it easy to disable deployment of a detector, just a variable to set

Describe alternatives you've considered
Something could be done with the condition parameter (that would set count to 0) but it's not well documented, and not easy

@haedri haedri added templating About modules templating or terraform capabilities new feature Request for new feature labels Feb 12, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
new feature Request for new feature templating About modules templating or terraform capabilities
Projects
None yet
Development

No branches or pull requests

1 participant