# ElasticCloud Watcher slack-integration

**URL:** <https://discuss.elastic.co/t/elasticcloud-watcher-slack-integration/67786>\
**Category:** Elasticsearch\
**Tags:** elastic-stack-alerting\
**Created:** [December 1, 2016, 4:20pm UTC](https://discuss.elastic.co/t/elasticcloud-watcher-slack-integration/67786 "2016-12-01T16:20:16Z")\
**Posts on this page:** 6\
**Page:** 1

<div class="post-metadata">

**Author:** ![Ryan\_Grannell](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/ryan_grannell/32/41712_2.png) [@Ryan\_Grannell](https://discuss.elastic.co/u/Ryan_Grannell)\
**Post date:** [December 1, 2016, 4:20pm UTC](https://discuss.elastic.co/t/elasticcloud-watcher-slack-integration/67786/1 "2016-12-01T16:20:16Z")

</div>

Hi,

Are there any plans to add Slack-support to ElasticCloud's watcher instance? We currently monitor most of our IT infrastructure through slack, but we have a significant number of watchers that are sent to email, which is not ideal for us

Thanks,  
Ryan

---

<div class="post-metadata">

**Author:** ![spinscale](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/spinscale/32/25011_2.png) [@spinscale](https://discuss.elastic.co/u/spinscale)\
**Post date:** [December 1, 2016, 4:52pm UTC](https://discuss.elastic.co/t/elasticcloud-watcher-slack-integration/67786/2 "2016-12-01T16:52:18Z")

</div>

Hey,

I think I may have misunderstood your question. You can configure slack/hipchat accounts in cloud clusters, by specifying the right user settings. When you create a cluster there is IIRC also shown an example with a slack account.

The [cloud docs](https://www.elastic.co/guide/en/cloud/external/watcher.html#advanced-usage) also have a small section about this.

Hope this helps. Otherwise please rephrase your question, so I get it right 🙂

--Alex

---

<div class="post-metadata">

**Author:** ![skearns](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/skearns/32/125945_2.png) [@skearns](https://discuss.elastic.co/u/skearns)\
**Post date:** [December 1, 2016, 4:59pm UTC](https://discuss.elastic.co/t/elasticcloud-watcher-slack-integration/67786/3 "2016-12-01T16:59:48Z")

</div>

Note that slack support was added with Elasticsearch 2.0, so if you're running an Elasticsearch 1.x cluster in Elastic Cloud, you will need to upgrade to use Slack with Watcher.

Thanks,  
Steve

---

<div class="post-metadata">

**Author:** ![Ryan\_Grannell](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/ryan_grannell/32/41712_2.png) [@Ryan\_Grannell](https://discuss.elastic.co/u/Ryan_Grannell)\
**Post date:** [December 21, 2016, 9:58am UTC](https://discuss.elastic.co/t/elasticcloud-watcher-slack-integration/67786/4 "2016-12-21T09:58:42Z")

</div>

Thanks Alexander, Steve,

I didn't get this running correctly through the Slack plugin (I was getting odd complaints about Cloudflare in my Watch history logs, I'd post an example but I can't find on right now):

I managed to get it working by making a direct HTTP request through the Watcher plugin, using the following code (the body isn't valid JSON, but follows the actual structure I use:

```
"slack": {
  "throttle_period": "3h",
  "webhook": {
    "scheme": "https",
    "host": "hooks.slack.com",
    "port": 443,
    "method": "post",
    "path": {
      "inline": "/services/ *****/***** / *****"
    },
    "params": {},
    "headers": {
      "Content-Type": "application/json"
    },
    "body": "{  
      "username": 'watcher-bot',
      "icon_emoji": ':sleuth_or_spy:',
      "color": 'warning',
      "text": 'My Watcher Alert Content'

    }"
}

```

I excluded them, but I also have attachments that link to the Kibana logs / ElasticSearch logs for that particular Watch execution, to help debugging. Hopefully the above example can help someone else out, if they get stuck too

---

<div class="post-metadata">

**Author:** ![spinscale](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/spinscale/32/25011_2.png) [@spinscale](https://discuss.elastic.co/u/spinscale)\
**Post date:** [December 29, 2016, 8:51am UTC](https://discuss.elastic.co/t/elasticcloud-watcher-slack-integration/67786/5 "2016-12-29T08:51:23Z")

</div>

Hey,

if you find more information, I'd be happy to get my hands on it, maybe we can make the slack action more verbose/helpful in case of an error. Feel free to mail me at $firstname.$lastname@elastic.co.

Thanks a lot!

--Alex

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [January 26, 2017, 8:51am UTC](https://discuss.elastic.co/t/elasticcloud-watcher-slack-integration/67786/6 "2017-01-26T08:51:59Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
