Cortex XSOAR Discussions
Cortex XSOAR enables SOC analysts to manage alerts across all sources, standardize processes with playbooks, take action on threat intel, and automate response for any security use case.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Cortex XSOAR Discussions
Cortex XSOAR enables SOC analysts to manage alerts across all sources, standardize processes with playbooks, take action on threat intel, and automate response for any security use case.
About Cortex XSOAR Discussions
Cortex XSOAR enables SOC analysts to manage alerts across all sources, standardize processes with playbooks, take action on threat intel, and automate response for any security use case.

Discussions

Edit Splunk Search Output

Hi,
I am running a query in splunk search automation, The output I am getting includes too many brackets. I want to edit the output and I want to further use that output in different task.

Can anyone please suggest how can I edit the splunk search out

...

Himangi by L2 Linker
  • 1072 Views
  • 5 replies
  • 0 Likes

Resolved! Dev Content Repository update issues

Hello,

 

I'm working in a XSOAR Dev to Prod environment.  

 

The connection from Dev to it's repository branch was broken a while back.

When updating the password I'm getting the following message asking me to discard all of my local Dev changes.

 

...

joshuajohnsonco_0-1696876657024.png

Resolved! XSOAR Pre-requisites

Hi,

 

I am trying to deploy Cortex XSOAR in Centos 7.9 version.

In the XSOAR help document there is a pre-requisite for the kernel versions of Linux, as shown in the screenshot below,

 

But when i checked the Kernel version of Centos 7.9 it is 3.10.

...

nithink_0-1695204114140.png
nithin.k by L1 Bithead
  • 1254 Views
  • 3 replies
  • 0 Likes

Related to Cortex XSOAR Playbook

Hello,

We have integrated QRadar with Cortex XSOAR. I am creating playbook that should be sending email to the Client for triggered alert. Now, I wanted to events fields, Virus total reputation that shows in analysis in the email body. Questions are,

H

...

Text Widget update issue

Hello everyone,

 

I have issue with text widget which is getting the value from automation. The automation have two mandatory fields that are going to get input when playbook executed.

 

Automation sets the list data by getting user input which is we

...

Screenshot 2023-08-18 175634.png

manage Null values

Hello,

I'm trying to create a dataframe from two lists from the context:

key1:

     0:value1

     1:null

     2:value3

 

key2:

     0:value1

     1:value2

     2:value3

 

When I call them using demisto.getContext(...), the null value is not passed, l

...

Josep by L4 Transporter
  • 2733 Views
  • 13 replies
  • 0 Likes

Free space in XSOAR

Hello,

We're feeding XSOAR with a lot of incidents. To avoid this, we created a job which deletes incidents each week. However, due to the amount of them, the command "SearchIncidentsV2" fails, it's no capable to search them. How can we free space by

...

Josep by L4 Transporter
  • 1109 Views
  • 3 replies
  • 0 Likes

Problem retrieving fields from XDR

Hello community,

 

I am having a problem retrieving fields in XSOAR from XDR. I get most of the fields, but there are some that do not reach XSOAR, such as, for example, the "action_evtlog_data_fields" (it is not that they do not appear in the conte

...

rafaelusano_0-1695313186329.png
rafaelusano_1-1695313371429.png

Not able to export custom field in the report

Hello team,


I attempted to export the values of custom SLA fields into a CSV report. When I tried to create the report through the UI, it displayed the timer values, but when I actually generated the report, it only showed the run status (running or

...

SGupta by L1 Bithead
  • 897 Views
  • 1 replies
  • 0 Likes
  • 996 Posts
  • 31 Subscriptions
This widget could not be displayed.
Top Solution Authors