hive_observable_data_mapping not working for TheHive4 #348
-
Hi Team, The case is being created fine but when it comes to observables or titles or any custom fields, it is not working as expected. I see the variable input instead of actual value in TheHIve4 alert section. Example: {rule[name]} elast.yaml is as below: |
Beta Was this translation helpful? Give feedback.
Replies: 1 comment 13 replies
-
Which version of ElastAlert are you using? Can you post your rule definition? And finally, can you link me to the documentation you are using to define the rule? |
Beta Was this translation helpful? Give feedback.
Which version of ElastAlert are you using? Can you post your rule definition? And finally, can you link me to the documentation you are using to define the rule?