Azure-Sentinel
Azure-Sentinel copied to clipboard
Initial Commit For Send-Slack-Message-Webhook
Required items, please complete
Change(s):
- Adding Send-Slack-Message-Webhook Playbook
Reason for Change(s):
- Adding feature
Testing Completed:
- Yes
Checked that the validations are passing and have addressed any issues that are present:
- Yes
Hi @ZLT-ops, thanks for this contribution! Is this playbook different then this by allowing the Slack user to interactively response from Slack? Can you also add screenshot of how the Slack message looks like?
If you want this playbook to be shared in the playbook templates tab, please add also the metadata and screenshots. (the screenshot you shared has an issue in the trigger component) https://github.com/Azure/Azure-Sentinel/tree/master/docs/New%20Playbooks%20Contribution%20Guide
Hi @lior-tamir, The difference is that the Post-Message-Slack requires you to install the application in Slack with your permissions, and in my case i didn't had one and the admin that installed the app was not a part of the channel i wanted to send message to. Our IT department was against adding a Service Account with an Slack Owner permissions.
So i search for a way do make it with Webhook and didn't find one, so i created this one.
Will add screenshot of the message.
@anki-narravula Please review playbooks. Thanks.
Please change the action titles in the card:
- the card says "close alerts", while you cannot close alerts in Sentinel, you are closing the incidents
- Please change the term "whitelist" to "allow list" or something similar :)
Please fix the screen shots to show the trigger (currently it shows an "connection" error instead of its title I added some fixes and metadata so we can show this in playbook templates tab
@ZLT-ops please update the requested changes. thanks!!!
@vmanojreddy made the changes
@anki-narravula Please check and approve the requested changes. thanks!!!
@anki-narravula Please check and approve the requested changes. thanks!!!
Any updates on the approvals ? @vmanojreddy @anki-narravula
@anki-narravula Please check and approve the requested changes. thanks!!!
@anki-narravula Please check and approve the requested changes. thanks!!!
@anki-narravula Please check and approve the requested changes. thanks!!!
@anki-narravula : Please check and approve the requested changes. thanks!!!
@anki-narravula : Please check and approve. thanks!!!