Forum Discussion

skisec's avatar
skisec
Copper Contributor
Mar 26, 2024

Major Delay with /alerts endpoint

Hey folks,

I've been seeing some significant delays with the /alerts API endpoint. Ball park range of 2-5 hours.

For example, there is an alert in Azure Sentinel that fires at ~13:00 UTC (based on TimeGenerated field). Our internal process that polls for new events from /alerts every ~2-3minutes doesn't pick up this new alert until ~17:00 UTC. 


I know there is the /alerts_v2 endpoint, and we're working on upgrading our processes to use that - but for the time being, I'm trying to find a solution / answer to this particular endpoint. 

Anyone experience this or have any insights?

No RepliesBe the first to reply

Resources