Cortex XSIAM Discussions
Cortex XSIAM, the autonomous security platform powering the Modern SOC, operates across cloud and enterprise security operations, providing true end-to-end management of threats wherever they originate.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Cortex XSIAM Discussions
Cortex XSIAM, the autonomous security platform powering the Modern SOC, operates across cloud and enterprise security operations, providing true end-to-end management of threats wherever they originate.
About Cortex XSIAM Discussions
Cortex XSIAM, the autonomous security platform powering the Modern SOC, operates across cloud and enterprise security operations, providing true end-to-end management of threats wherever they originate.

Discussions

Welcome to the Cortex XSIAM Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating:

 

Rules and Best Practices

 

  1. Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussion
...

JayGolf by Community Team Member
  • 704 Views
  • 0 replies
  • 0 Likes

Playbook| XSIAM

How to check if a particular integration is enabled using a playbook?

 

for example I want a conditional task that checks if AD is enabled. What filters can I use ?

XDR Agent Reconnecting

 

 

Agent Version: 8.6.0.3704
Last Seen: 01 January 2025

 

We had to remove the protection since it is cutting off connection via SSH for Backup purposes. Moreover, with protection off, it is able to backup consistently.

 

My question is, we have I al

...

Welcome to the Cortex XSIAM Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating:

 

Rules and Best Practices

 

  1. Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussion
...

JayGolf by Community Team Member
  • 704 Views
  • 0 replies
  • 0 Likes

Dynamic Parsing of JSON to fields in XQL

Hi everyone,

 

I’m working with a dataset in Cortex XSIAM, where I have a field containing JSON data. I want to dynamically parse this JSON so that each key becomes a field and the corresponding value is populated as its value.

Is there a way in XQL

...

Broker VM rejects SSL certificate

Hello PAN community,

 

I am trying to import a SSL certificate into our #BrokerVM
I can upload the private key, but the Server Certificate gets rejected with the Error: "failed to set custom ssl certificate"

I tried .cer and .pem files and none were a

...

XQL Query for a Correlation Rules

I am trying to write a xql query for a correlation rule in which alert or incident will trigger for below condition.
Condition:

Threshold: Only once on match 2

Detect on unique values of: hostname

So, my question is. how to write "Detect on unique valu

...

  • 107 Posts
  • 37 Subscriptions
Top Liked Authors
Labels