# Configure a Slack watcher alert from the UI

**URL:** <https://discuss.elastic.co/t/configure-a-slack-watcher-alert-from-the-ui/177446>\
**Category:** Kibana\
**Tags:** elastic-stack-alerting\
**Created:** [April 18, 2019, 10:47am UTC](https://discuss.elastic.co/t/configure-a-slack-watcher-alert-from-the-ui/177446 "2019-04-18T10:47:35Z")\
**Posts on this page:** 6\
**Page:** 1

<div class="post-metadata">

**Author:** ![cgfrost](https://avatars.discourse-cdn.com/v4/letter/c/9de053/32.png) [@cgfrost](https://discuss.elastic.co/u/cgfrost)\
**Post date:** [April 18, 2019, 10:47am UTC](https://discuss.elastic.co/t/configure-a-slack-watcher-alert-from-the-ui/177446/1 "2019-04-18T10:47:35Z")

</div>

I'm using Elastic Cloud, with ElasticSearch version 7.

I've configured the Slack URL using the Keystore UI in the Cloud admin console for my cluster with single value named "xpack.notification.slack.account.monitoring.secure\_url". I restarted the cluster to make sure the KeyStore entry was set/added. Then in Kibana I'm trying to add the Slack action to a watcher but I don't know what to put in the "Recipient" field? I've tried everything I can think of and there is very little documentation on how to configure things using the UI.

Sending the test message results in the error message. "[illegal\_argument\_exception] no accounts of type [slack] configured. Please set up an account using the [xpack.notification.slack] settings". So have I configured the KeyStore wrong or the Watcher wrong?

---

<div class="post-metadata">

**Author:** ![shrikantgulia](https://avatars.discourse-cdn.com/v4/letter/s/c68b51/32.png) [@shrikantgulia](https://discuss.elastic.co/u/shrikantgulia)\
**Post date:** [April 18, 2019, 12:14pm UTC](https://discuss.elastic.co/t/configure-a-slack-watcher-alert-from-the-ui/177446/2 "2019-04-18T12:14:26Z")

</div>

Hello @cgfrost

To add slack for the kibana you need to make some changes in elasticsearch.yml

In the elasticsearch edit the configuration file of elasticsearch i.e elasticsearch.yml  
And paste the following

```
	xpack.notification.slack :
	     account :
                            monitoring :
                                  url : < your slack url >

```

for slack url you need to create it from slack settings

---

<div class="post-metadata">

**Author:** ![cgfrost](https://avatars.discourse-cdn.com/v4/letter/c/9de053/32.png) [@cgfrost](https://discuss.elastic.co/u/cgfrost)\
**Post date:** [April 18, 2019, 12:52pm UTC](https://discuss.elastic.co/t/configure-a-slack-watcher-alert-from-the-ui/177446/3 "2019-04-18T12:52:13Z")

</div>

As of version 7.0 this can no longer be configured in the `elasticsearch.yml` file  
. It has to be done through the keystore. Unless I miss-read the docs and release notes. I did try and apply the config through the config file but they failed to be deployed which I took as confirmation that they have been removed.

[https://www.elastic.co/guide/en/elastic-stack-overview/7.0/actions-slack.html#configuring-slack](https://www.elastic.co/guide/en/elastic-stack-overview/7.0/actions-slack.html#configuring-slack)  
[https://www.elastic.co/guide/en/elasticsearch/reference/current/breaking-changes-7.0.html#watcher-notifications-account-settings](https://www.elastic.co/guide/en/elasticsearch/reference/current/breaking-changes-7.0.html#watcher-notifications-account-settings)

---

<div class="post-metadata">

**Author:** ![kevindoveton](https://avatars.discourse-cdn.com/v4/letter/k/7feea3/32.png) [@kevindoveton](https://discuss.elastic.co/u/kevindoveton)\
**Post date:** [May 4, 2019, 2:41am UTC](https://discuss.elastic.co/t/configure-a-slack-watcher-alert-from-the-ui/177446/4 "2019-05-04T02:41:31Z")

</div>

@cgfrost were you able to solve this? I'm coming up against the same problem

---

<div class="post-metadata">

**Author:** ![cgfrost](https://avatars.discourse-cdn.com/v4/letter/c/9de053/32.png) [@cgfrost](https://discuss.elastic.co/u/cgfrost)\
**Post date:** [May 4, 2019, 4:01pm UTC](https://discuss.elastic.co/t/configure-a-slack-watcher-alert-from-the-ui/177446/5 "2019-05-04T16:01:18Z")

</div>

No. I've not put any more effort in to it so still not working.

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [June 1, 2019, 4:13pm UTC](https://discuss.elastic.co/t/configure-a-slack-watcher-alert-from-the-ui/177446/6 "2019-06-01T16:13:36Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
