# Email action message

**URL:** <https://discuss.elastic.co/t/email-action-message/343910>\
**Category:** Kibana\
**Created:** [September 26, 2023, 3:55pm UTC](https://discuss.elastic.co/t/email-action-message/343910 "2023-09-26T15:55:52Z")\
**Posts on this page:** 2\
**Page:** 1

<div class="post-metadata">

**Author:** ![ramiwashere](https://avatars.discourse-cdn.com/v4/letter/r/6f9a4e/32.png) [@ramiwashere](https://discuss.elastic.co/u/ramiwashere)\
**Post date:** [September 26, 2023, 3:55pm UTC](https://discuss.elastic.co/t/email-action-message/343910/1 "2023-09-26T15:55:52Z")

</div>

Hello,

I have an alert using rule from security section.  
My aim is to gather some information into the mail alert from the alert:

In my example, I would like to take the username & the ip:

```auto
{{#context.hits}} Username: {{_source.source.user.name}} - IP: {{_source.destination.ip}}
{{/context.hits}}

```

I try several different configuration following links like [Rule action variables | Kibana Guide [8.10] | Elastic](https://www.elastic.co/guide/en/kibana/current/rule-action-variables.html).

But everytimes, there is a blank on my email alert.

Anyone experienced this ?  
Any clue is appreciated 🙂

Thank you

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [October 24, 2023, 3:56pm UTC](https://discuss.elastic.co/t/email-action-message/343910/2 "2023-10-24T15:56:03Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
