I use a customise report in order to query all threats related to one particular IP over a specific timeframe (e.g. 7 days, 30 days, etc.). The report is fairly basic and list the threat names, source and destination IP and also the severity.
Is there a way to change the IP address parameter in the report using the REST API? Obviously I'm not interested in running the same report for the same IP address over and over. The documentation mention that we can have different selection criteria such as time frame, group-by, etc. but I haven't found something related to a specifc report parameter such as IP or threat ID.
Any information will be greatly appreciated!
Thanks, best regards, Simon
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!