Hi all,
I am creating a alerting system with elastic connectors , so far now i am able to send alerts to telegrame via a bot but the issue is the details of the alerts for a example:
I have a rule for firewall login failure and i need to send the alert with who failed to login like if user A failed to login alert should be << Elastic Alert: Firewall Login Failure , user A failed to login to the firewall >>
but it seems i cannot includ the username field to the alert data
I uploaded a screenshot of the body of the connection action
I bit confused with this variables that is available in this , what are they from where they get can i create a new variable?
I am hoping that someone can help me with this
Thank you