Forum Discussion
skisec
Mar 26, 2024Copper Contributor
Major Delay with /alerts endpoint
Hey folks,
I've been seeing some significant delays with the /alerts API endpoint. Ball park range of 2-5 hours.
For example, there is an alert in Azure Sentinel that fires at ~13:00 UTC (based on TimeGenerated field). Our internal process that polls for new events from /alerts every ~2-3minutes doesn't pick up this new alert until ~17:00 UTC.
I know there is the /alerts_v2 endpoint, and we're working on upgrading our processes to use that - but for the time being, I'm trying to find a solution / answer to this particular endpoint.
Anyone experience this or have any insights?
No RepliesBe the first to reply