Skip to main content

SES alerts

Send kwatch incident alerts to SES. Use the interactive manager for installation and credential setup. This page explains the provider fields and shows a minimal configuration fragment.

Before you start, have these values ready:

  • accessKeyId — AWS access key ID.
  • secretAccessKey — AWS secret access key.
  • from — Verified sender address.
  • to — Recipients (comma-separated).

Credentials, tokens, keys, passwords, and webhook URLs must be mounted from a Kubernetes Secret. Use an exact ${file:/absolute/path} reference for every field marked Secret.

Configuration​

FieldTypeRequiredSecretValidationDefaultDescription
accessKeyIdstringyesyes——AWS access key ID
secretAccessKeystringyesyes——AWS secret access key
regionstringnono—us-east-1AWS region (default: us-east-1)
fromstringyesno——Verified sender address
tostringyesno——Recipients (comma-separated)
subjectstringnono——Email subject
routesjsonnonojson—Optional JSON route filters.
retry.maxAttemptsintegernonointeger—Optional maximum retry attempts.
retry.delaystringnono——Optional retry delay, for example 5s.
fallbackstringnono——Optional fallback provider name.

Minimal example​

alert:
ses:
accessKeyId: "${file:/config/ses-accessKeyId}"
secretAccessKey: "${file:/config/ses-secretAccessKey}"
from: <from>
to: <to>

Add routes, retry, and fallback when you need delivery filtering or recovery. See the channels overview for guidance, or the complete provider reference for the catalog-wide view.