Open source Enterprise Grafana Cloud
Last reviewed: August 19, 2026

Notifications

Once a rule fires, the ruler’s job is done. It just keeps reporting the alert. Everything from that point is Alertmanager’s decision.

What Alertmanager does with an alert

For each firing alert, in roughly this order:

  1. Deduplicate. Alerts with identical labels are the same alert, even from different ruler replicas.
  2. Group. Related alerts are batched so one incident produces one notification instead of fifty. Refer to Group alert notifications.
  3. Route. The routing tree is walked to decide which receiver the group goes to. Refer to The routing tree.
  4. Suppress, if applicable. A matching silence, an active inhibition rule, or a route muted by a time interval stops the notification here.
  5. Notify. The receiver’s integrations are called. Refer to Receivers.

The important consequence: a firing alert and a delivered notification are different things. Most “the alert fired but nobody was paged” problems are a suppression or routing step in the middle, not a broken rule.

Three ways to suppress a notification

They’re easy to confuse, and the plugin exposes all three separately:

MechanismSuppressesTypical use
SilenceAlerts matching label matchers, for a fixed windowPlanned maintenance, a known issue being worked on
Inhibition ruleAlerts of one kind while another kind is firingDon’t page for every service when the whole cluster is down
Time intervalNotifications on a route, during recurring windowsDon’t send non-urgent alerts overnight

A silence is a one-off you create by hand and that expires. An inhibition rule is standing configuration driven by other alerts. A time interval is a recurring schedule attached to a route.

The Alerts page shows which of these applied, labeling an alert as silenced by a silence, inhibited by an inhibition rule, or muted by a time interval.

In this section