Creating an Alert Rule
- Navigate to Alerts
- Click Add Rule
- Configure the rule settings
- Click Save
Rule Settings
Trigger Types
Infrastructure Thresholds
For infrastructure agents, you can set metric-based thresholds:Common Threshold Examples
Anti-Flapping
Alert rules use breach thresholds and recovery thresholds to prevent flapping:1
Breach threshold
The metric must exceed the threshold for N consecutive evaluations before an incident is created. This prevents one-off spikes from triggering alerts.
2
Recovery threshold
The metric must stay below the threshold for N consecutive evaluations before the incident is auto-resolved. Default: 2 for host metrics, 3 for CloudWatch.
Evaluation frequency is every 2 minutes for infrastructure metrics (via the
evaluate_infra_alerts Celery task).Per-Agent Overrides
If a specific server needs different thresholds (e.g., a database server that normally runs at 80% memory), you can create per-agent overrides:- Open the alert rule
- Click Add Override
- Select the agent
- Set the custom threshold
- Click Save
Cooldown Period
The cooldown prevents notification spam:- After an alert fires, the rule enters a cooldown period
- During cooldown, the same rule won’t fire again even if conditions persist
- Use shorter cooldowns (5-15 min) for critical alerts
- Use longer cooldowns (30-60 min) for informational alerts
Notification Routing
Alert rules work with notification rules to determine where alerts are sent:- Alert Rule triggers an incident
- Notification Rule matches the trigger type and severity
- Notification Channel delivers the message (Slack, email, SMS, etc.)
See Notifications Guide for channel configuration details.
Enabling/Disabling Rules
Toggle any rule on or off from the alert rules list. Disabled rules stop evaluating — no incidents will be created.CloudWatch Alert Thresholds
For AWS managed services monitored via CloudWatch, Upmetr includes 8 pre-configured critical rules:
These are created automatically when you add a cloud account with CloudWatch access.

