Forum Discussion
uditk14
Jun 10, 2020Copper Contributor
Unable to post search results in custom JSON payload in Azure Alert
The task is to post the query results on Slack using a webhook and include the search results in the message.
As per this documentation, I have included the key IncludeSearchResults key in my custom JSON payload and set it to true.
But when the condition is met, all the other properties like alert name, description, etc. are included but search results from the query are not posted as a part of the message.
- Ofer_Shezaf
Microsoft
uditk14 this forum is for Azure Sentinel and I can help you if you would like to use Azure Sentinel alerts for this task. If you are not an Azure Sentinel user and would like to discuss Azure Monitor, you should ask on the Azure Monitor tech community.