- Access exclusive content
- Connect with peers
- Share your expertise
- Find support resources
04-22-2024 04:47 AM
Hello everyone,
What types of scripts have you configured in the 'Scripts Library' of Cortex XDR and for what purpose?
With these scripts, is it possible to create automations?
For instance, to detect if a certain computer has any software installed... if it doesn't, to enforce the installation or execution of a domain script?
04-22-2024 08:24 AM
Hi @tlmarques, thanks for reaching us using the Live Community.
You can find the out of the box scripts list and the description in this documentation: https://docs-cortex.paloaltonetworks.com/r/Cortex-XDR/Cortex-XDR-Pro-Administrator-Guide/Run-Scripts...
The main purpose of the scripts is for Incident Response, you can use them to remotely close malware processes in many endpoints at the same time if needed.
You can use them as Automation Rules actions:
Also, you can create scripts for many other use cases that can be useful for your company, like the one you mention. In the previous attached Documentation link you can find the requirements to upload custom scripts.
If this post answers your question, please mark it as the solution.
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!