Forum Discussion

BcyberS's avatar
BcyberS
Brass Contributor
Aug 09, 2024

Slack slackbot messages using interactivity for Microsoft Sentinel incident actions

Hi,

 

I am just wondering if anyone has managed to integrate Microsoft Sentinel Incidents with Slack to send slackbot messages using 'interactivity'. Similar to the Sentinel/MS Teams Adaptive Card feature where you get an adaptive card in teams and you can hit buttons with actions such as 'Change Severity', 'Change Status', 'Assign Owner' etc etc. I am wondering if anyone has managed to achieve this same functionality with Slack. The closest I have found is this GitHub repo which uses a Webhook: 

 

https://github.com/Azure/Azure-Sentinel/blob/master/Playbooks/Send-Slack-Message-Webhook/incident-trigger/images/SlackMessage.png 

 

I have tried this but to no avail. 

 

Any insights would be appreciated,

No RepliesBe the first to reply

Resources