- Access exclusive content
- Connect with peers
- Share your expertise
- Find support resources
06-09-2023 06:31 AM
Hello Everyone,
We are pulling alerts from the XDR API using below endpoint:
06-09-2023 09:25 AM
Hello @sushant1601
Thanks for reaching out on LiveCommunity!
Please find below answers to your queries.
06-09-2023 09:25 AM
Hello @sushant1601
Thanks for reaching out on LiveCommunity!
Please find below answers to your queries.
06-09-2023 09:50 AM
Thank you @nsinghvirk for the quick response. Really appreciate it.
Followup to your response, currently we query based on creation time to pull logs and to keep a pointer of the log fetched.. If local_insert_ts is the time when XDR agent ingests an alert, can we use this field in the API query to pull the logs?
Thank you again for your response.
06-10-2023 05:12 AM
Hello @sushant1601
Use of a field depends on the use case or type of data that you want to obtain. Please take help from API reference guide according to your use case.
I hope this answers your question.
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!