This website uses Cookies. Click Accept to agree to our website's cookie use as described in our Cookie Policy. Click Preferences to customize your cookie settings.
@king_penson what field did you map this data to?
I am trying to configure the elasticsearch incoming mapper to set the Incident Severity but it does not work.
... View more
Hello,
I am trying to set the IncidentName and IncidentSeverity of an XSoar incident with the incoming mapper but it does not work. Ive tried googling and reading up but I cant find how you are supposed to set these fields.
Has anyone done this before and can point me to the right documentation to follow?
Thanks!
... View more
Hello We are in the process of implementing the Elasticsearch integration in Cortex XSoar. However, we are wondering what best practices are when you have several Elastic nodes but the integration only allows entering one node address to connect to. I.e., we have elasticsearch.[1:5].domain.com for redundancy but the integration only allows entering one address.
... View more