I'm not an expert in this domain, but it looks to me like Elasticsearch is interpreting the entire string '20.2.130.1', '20.2.130.2' as a single host and wrapping it into an invalid webhook URL http://''20.2.130.1', ''20.2.130.2':5001/Token=watcher-database-sql/Host=.
Did you see this comma-separated syntax somewhere in the docs? I only see a single hostname in the example (I'm looking here).
If you want to send to two different hosts, you may need two different webhook entries.
Apache, Apache Lucene, Apache Hadoop, Hadoop, HDFS and the yellow elephant
logo are trademarks of the
Apache Software Foundation
in the United States and/or other countries.