Adding two alert in one #859
Replies: 1 comment
-
The alert command feature can script decisions based on an initial alert. |
Beta Was this translation helpful? Give feedback.
0 replies
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
-
Hi team,
I want to make an aler like if from an IP we get accept connection on firewall and within a certain time we get any suspicious activity on endpoint. It is possible in elastalert 2. Please help I have little bit knowledge of elastalert , so plz eloborate the process how I make this rule ,plz suggest.
Thankyou.
Beta Was this translation helpful? Give feedback.
All reactions