Hey everyone,
Hope you’re all having a great day!
I’m sharing a blog post I’ve written that walks through how to use Lookup Tables as part of Event Definitions. It’s a super powerful way to expand the Alerting capabilities inside of Graylog, particularly in making them more dynamic. I hope you find it an interesting read and let me know if you have any feedback!
Blog post - Risk Based Alerts Using Lookup Tables
Jim