Common File for adding email address in SIEM Detection email action


Please share if there any way to keep common file for Email "To" address and use parameter in detection email action instead of adding email address in each Detections Rules.

I am using ELK 7.13.4.

Thanks in advance

One more doubt related to the above query. If there is no common file method to enter the email address. Kindly share if there is any option to do bulk actions to change the email ids in multiple rules.

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.