Open problematiq opened 5 years ago
If not already possible, can we get the ability to use field values for the tlp: and severity: for hive alert? e.g:
tlp:
severity:
tlp: '{match[alert.tlp]}' severity: '{match[alert.severity]}'
I vote for it and I also suggest to have this ability in the customFields: in TheHive alerter.
customFields:
I would also like this feature. Is it possible at the moment? What needs to be done to get this working?
If not already possible, can we get the ability to use field values for the
tlp:
andseverity:
for hive alert? e.g: