Sumo Logic Integration Guide

Sumo Logic provides rich query and aggregation capabilities for analyzing vast amounts of log data, helping you to more rapidly troubleshoot critical infrastructure failures and complex application issues. Sumo Logic can also be configured to trigger alerts in PagerDuty based on scheduled searches, so you can react even faster.  Using PagerDuty, you can ensure that the right person is alerted via phone call, SMS, push notification, or email.

If you would like to use the previous integration, click here to access the Sumo Logic email integration guide.

In PagerDuty

  1. Go to the Services menu and select Service Directory.
  2. On the Service Directory page:
    • If you are creating a new service for your integration, click +New Service and follow the steps outlined, selecting this integration in step 4.
    • If you are adding your integration to an existing service, click the name of the service you want to add the integration to. Then click the Integrations tab and click Add a new integration.
  3. Under Select the integration(s) you use to send alerts to this service search and select this integration.
  4. Click the Add Service or Add Integration button to save your new integration. You will be redirected to the Integrations page for your service.
  5. Find the integration in the list, copy the Integration Key and keep it in a safe place for later use.

In Sumo Logic

  1. Select Manage Data > Alerts tab > Connections tab.
  2. Click + to the right and select PagerDuty.
  3. To configure the PagerDuty Connection:
    1. Enter a Name for the connection.
    2. In the URL field, enter:
      https://events.pagerduty.com/generic/2010-04-15/create_event.json
    3. In the Payload field, leave everything as is, except for the following:
      1. Where it says SERVICE KEY, paste in the integration key you previously copied from PagerDuty.
      2. In the Payload for the description, specify the description you want sent to PagerDuty.
    4. Click Save.
    5. Next, select the home icon in the top left menu and click Log Search. Create a search in the search field that will send events to PagerDuty to create incidents.
    6. After entering in your search criteria, click Save As.
    7. Enter in a name for your search.
    8. Click on Schedule this search > to specify the conditions under which you’d like it to trigger an incident.
    9. Pick a Run frequency. For example, 15 minutes.
    10. Click Save.
    11. Set your additional settings for your scheduled search:
      1. Time range for schedule search: Last 60 minutes
      2. Send notification only if the condition below is satisfied: Number of results Greater than or equal to >= 0.
      3. Alert Type: select Webhook
      4. In the Webhook field, select the webhook we just created (you will see the payload with the integration key appear).

        1. Click Save.

Congrats, you have completed the integration with PagerDuty and Sumo Logic! When an event is sent to PagerDuty and an incident is created, there will be a link to view that incident in Sumo Logic.

FAQ

Can I integrate Sumo Logic with multiple PagerDuty services?

Yes you can, just follow the integration guide again as many times as you would like.

Start Using PagerDuty Today

Try PagerDuty free for 14 days — no credit card required.