# Mimecast Integration

**URL:** <https://discuss.elastic.co/t/mimecast-integration/359406>\
**Category:** Kibana\
**Created:** [May 13, 2024, 6:58pm UTC](https://discuss.elastic.co/t/mimecast-integration/359406 "2024-05-13T18:58:57Z")\
**Posts on this page:** 4\
**Page:** 1

<div class="post-metadata">

**Author:** ![garretth210](https://avatars.discourse-cdn.com/v4/letter/g/f07891/32.png) [@garretth210](https://discuss.elastic.co/u/garretth210)\
**Post date:** [May 13, 2024, 6:58pm UTC](https://discuss.elastic.co/t/mimecast-integration/359406/1 "2024-05-13T18:58:57Z")

</div>

I am trying to integrate Mimecast into elastic using the integration setup in elastic. The url in the API call however defaults to "eu-api.mimecast" and I need to change it to "us-api.mimecast". How would I go about changing that API request? (Very new to elastic)

---

<div class="post-metadata">

**Author:** ![dadoonet](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/dadoonet/32/137187_2.png) [@dadoonet](https://discuss.elastic.co/u/dadoonet)\
**Post date:** [May 13, 2024, 7:55pm UTC](https://discuss.elastic.co/t/mimecast-integration/359406/2 "2024-05-13T19:55:14Z")

</div>

Welcome!

What kind of integration do you want? Do you have any documentation about what you're saying? I don't see how it relates to elasticsearch but may be I'm missing something.

---

<div class="post-metadata">

**Author:** ![garretth210](https://avatars.discourse-cdn.com/v4/letter/g/f07891/32.png) [@garretth210](https://discuss.elastic.co/u/garretth210)\
**Post date:** [May 13, 2024, 8:23pm UTC](https://discuss.elastic.co/t/mimecast-integration/359406/3 "2024-05-13T20:23:37Z")

</div>

Hi I'm not sure what kind of integration I want. I created the necessary keys and API calls in mimecast and fed them into elastic. When I didn't see any data I opened a support ticket with mimecast. They seem to think that in the API request from elastic it sets the url to eu-api.mimecast. When I try to change it in dev tools it just reverts back and when I run it with us-api.mimecast I still get an error so I feel like I've done something wrong.

```auto
"mimecast-httpjson": {
      "enabled": true,
      "vars": {
        "api_url": **"https://eu-api.mimecast.com",**
        "app_key": {
          "id": "{value redacted}",
          "isSecretRef": true
        },
        "app_id": {
          "id": "{value redacted}",
          "isSecretRef": true
        },

```

Like I said I'm very new to elastic. Would it be easier to create a custom document with the API call myself?

---

<div class="post-metadata">

**Author:** ![dadoonet](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/dadoonet/32/137187_2.png) [@dadoonet](https://discuss.elastic.co/u/dadoonet)\
**Post date:** [May 13, 2024, 8:43pm UTC](https://discuss.elastic.co/t/mimecast-integration/359406/4 "2024-05-13T20:43:41Z")

</div>

Where did you put this code? I have no idea about what it is.
