Pure Storage FlashArray OnAlertCreated

Pure Storage FlashArray OnAlertCreated

Certified
Enterprise Edition

Trigger on new Pure Storage FlashArray alert

Polls GET /api/{version}/alerts at the configured interval and emits one execution per newly discovered, unacknowledged alert (state == open). The trigger tracks the opened timestamp of the newest-seen alert in namespace KV to avoid re-firing on alerts that were already processed; tracking by timestamp (rather than by ID) ensures the baseline survives an alert being acknowledged or closed between polls. Because two alerts can open in the very same millisecond, the baseline also records the IDs of every alert sharing that exact newest timestamp, so same-instant alerts are fired exactly once and never replayed. On the first poll, existing open alerts are recorded but do not trigger executions, preventing a flood on initial activation. If the array is unreachable, the trigger logs a warning and waits for the next interval.

yaml
type: io.kestra.plugin.ee.purestorage.arrays.OnAlertCreated

Trigger a flow whenever a new alert opens on a FlashArray.

yaml
id: purestorage_on_alert_created
namespace: company.team

tasks:
  - id: log_alert
    type: io.kestra.plugin.core.log.Log
    message: "New FlashArray alert: {{ trigger.alertName }} ({{ trigger.severity }}) - {{ trigger.summary }}"

triggers:
  - id: on_alert
    type: io.kestra.plugin.ee.purestorage.arrays.OnAlertCreated
    host: "{{ secret('PURESTORAGE_HOST') }}"
    apiToken: "{{ secret('PURESTORAGE_API_TOKEN') }}"
    interval: PT2M
Properties

FlashArray API token

Static API token used to authenticate. It is exchanged for a short-lived session token via the FlashArray login endpoint; this plugin does not perform the username/password to API-token exchange. Store this value as a Kestra secret and reference it via {{ secret('PURESTORAGE_API_TOKEN') }}.

FlashArray management IP or hostname

Hostname or IP address of the Pure Storage FlashArray management interface (for example: flasharray.example.com or 192.168.1.20). The REST API is reached at https://{host}: {port}/api/.

Defaultfalse

Specifies whether a trigger is allowed to start a new execution even if a previous run is still in progress.

REST API version override

Pins the Purity//FA REST API version to use (for example: 2.30), bypassing runtime version discovery (GET /api/api_version). Optional: when unset, the highest supported 2.x version is auto-detected.

DefaultPT1M
Formatduration

Polling interval

How often to poll the FlashArray API for new alerts. Defaults to PT1M (every minute).

HTTP client configuration

Optional HTTP client overrides such as timeouts, TLS settings, and proxy. When timeout is not set, a default 10s connect / 60s read-idle timeout is applied so an unreachable or stalled array fails fast with a clear error instead of hanging the task indefinitely; set timeout explicitly to override. For example:

options: 
  timeout: 
    connectTimeout: PT10S
    readIdleTimeout: PT30S
  ssl: 
    insecureTrustAllCertificates: true # accept self-signed array certs (insecure — lab use only)
Definitions
allowFailedbooleanstring
Defaultfalse

If true, allow a failed response code (response code >= 400)

allowedResponseCodesarray
SubTypeinteger

List of response code allowed for this request

auth

The authentication to use.

type*Requiredobject
passwordstring

The password for HTTP basic authentication.

usernamestring

The username for HTTP basic authentication.

type*Requiredobject
tokenstring

The token for bearer token authentication.

type*Requiredobject
passwordstring

The password for HTTP Digest authentication.

usernamestring

The username for HTTP Digest authentication.

defaultCharsetstring
DefaultUTF-8

The default charset for the request.

enabledTcpExtendedKeepAlivebooleanstring
Defaulttrue

Whether to enable TCP Keep-Alive extended socket options (TCP_KEEPIDLE, TCP_KEEPINTERVAL, TCP_KEEPCOUNT).

Set to false when running on Windows workers, as these extended socket options are not supported by the Windows JDK and will cause connection failures.

followRedirectsbooleanstring
Defaulttrue

Whether redirects should be followed automatically.

logsarray
SubTypestring
Possible Values
REQUEST_HEADERSREQUEST_BODYRESPONSE_HEADERSRESPONSE_BODY

The enabled log.

proxy

The proxy configuration.

addressstring

The address of the proxy server.

passwordstring

The password for proxy authentication.

portintegerstring

The port of the proxy server.

typestring
DefaultDIRECT
Possible Values
DIRECTHTTPSOCKS

The type of proxy to use.

usernamestring

The username for proxy authentication.

ssl

The SSL request options

insecureTrustAllCertificatesbooleanstring

Whether to disable checking of the remote SSL certificate.

Only applies if no trust store is configured. Note: This makes the SSL connection insecure and should only be used for testing. If you are using a self-signed certificate, set up a trust store instead.

timeout

The timeout configuration.

connectTimeoutstring

The time allowed to establish a connection to the server before failing.

readIdleTimeoutstring
DefaultPT5M

The time allowed for a read connection to remain idle before closing it.

Default443

FlashArray port

Port for the FlashArray REST API. Defaults to 443.

Defaulthttps

HTTP scheme

Protocol scheme used to reach the FlashArray REST API. Defaults to https. Set to http only for testing against local stubs; production arrays always use https.

SubTypestring
Possible Values
CREATEDSUBMITTEDRUNNINGPAUSEDRESTARTEDKILLINGSUCCESSWARNINGFAILEDKILLEDCANCELLEDQUEUEDRETRYINGRETRIEDSKIPPEDBREAKPOINTRESUBMITTED

List of execution states after which a trigger should be stopped (a.k.a. disabled).

Defaulttrue

A condition that determines whether the trigger should run.

A Pebble expression evaluated at trigger time. The trigger fires only when the expression evaluates to a truthy value (true, a non-empty string, a non-zero number). Use this to gate trigger execution on dynamic runtime values such as execution labels, flow variables, or environment conditions.

Alert ID

ID of the newest alert that triggered this execution.

Alert name

Name of the newest alert that triggered this execution.

New alert count

Number of new open alerts detected in this poll cycle.

Alert opened timestamp

Epoch milliseconds when the triggering alert was opened.

Alert severity

For example: info, warning, critical.

Alert summary