Configure Webhooks to Receive Event Notifications
You use webhooks to automate sending event notifications from a source application to a destination application. You can configure webhooks to enable Routing Director to send notifications to third-party applications, such as Slack, when the events that you have subscribed to are triggered on the managed devices.
Internet connectivity is required for Routing Director to connect to third-party applications.
The following section describes how to configure webhooks to receive event notifications in Slack.
To receive webhook notifications in a format that is compatible with Slack, you need to configure an intermediary that can interact with the sending and receiving applications, in this case, Routing Director and Slack. The recommended intermediary platform is Make. To process notifications, Make uses a workflow called Scenario, which converts the notifications to a format that Slack supports. Each event notification is sent to a URL that is generated for the Scenario in Make. The notification is then converted into a format that Slack supports and delivered to the configured Slack channel.
For information about Scenario in Make, see Scenario.
To configure webhooks in Routing Director to send notifications to a Slack channel:
Deprecation of SHA1-based Webhook Signature Header
When Routing Director sends a webhook event to a configured webhook endpoint, the request includes signature headers that allow the receiving application to verify that the request originated from Routing Director and that the payload has not been modified in transit. Starting from Release 2.10.0, these webhook requests include the following signature headers for verifying signature authenticity:
X-Mist-Signature: HMAC-SHA1 signature (deprecated) X-Mist-Signature-v2: HMAC-SHA256 signature (recommended)
The SHA1-based X-Mist-Signature header is being deprecated due to
weaker security of hashing algorithm. To support existing integrations, both SHA1-based and
SHA256-based signature headers are currently included in webhook requests.
To help identify the deprecation, webhook requests also include the following headers:
X-Mist-Signature-Deprecated: true X-Mist-Signature-Replacement: X-Mist-Signature-v2
You should update your webhook validation logic to use
X-Mist-Signature-v2 (HMAC-SHA256) and avoid relying on the
legacy X-Mist-Signature header.
We recommend you to migrate to X-Mist-Signature-v2 as soon as possible
to ensure uninterrupted webhook validation when the legacy header is retired in future
releases.