Skip to main content
To create a Slack notifier, set up Slack and then create the notifier in Palo Alto Networks Cortex XCOR. Before you begin, make sure you have the incoming webhook API URL from Slack.

Set up Slack

Before creating a Slack notifier in Cortex XCOR, create an incoming webhook in Slack. See Sending messages using incoming webhooks in the Slack documentation for more information. Next, create a Slack notifier in Cortex XCOR.

Create a Slack notifier in Cortex XCOR

After setting up Slack, you can create a Slack notifier in Cortex XCOR. Select from the following methods to create a Slack notifier. You can use variables in your notifiers.
To create a Slack notifier:
  1. In the navigation menu select Alerting > Notifiers.
  2. Click Create notifier.
  3. Enter a descriptive name for the notifier.
  4. Select Slack as the type of notifier you want to create.
  5. In the API URL field, enter the URL you created for your webhook in Slack, which is called as a POST request. For example:
    The API URL from Slack contains the channel name.
  6. In the Channel field, enter any channel name. This field is required for backward compatibility, but its value is ignored. The destination channel is set by the webhook you entered in the API URL field.
  7. Optional: In the Username field, enter the Slack username to post the notifier as.
  8. Optional: Select Notify when resolved to send a resolved alert notification.
  9. Click Save.