Cortex XSOAR Discussions
Cortex XSOAR enables SOC analysts to manage alerts across all sources, standardize processes with playbooks, take action on threat intel, and automate response for any security use case.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Cortex XSOAR Discussions
Cortex XSOAR enables SOC analysts to manage alerts across all sources, standardize processes with playbooks, take action on threat intel, and automate response for any security use case.
About Cortex XSOAR Discussions
Cortex XSOAR enables SOC analysts to manage alerts across all sources, standardize processes with playbooks, take action on threat intel, and automate response for any security use case.

Discussions

Get MFA authentication methods

Hello community!

 

I was wondering if there's any integration that would allow me to get the defined authentication methods for a given user. The use case is to know if someone who has entered credentials in a phishing portal has MFA enabled or not a

...

adocasar by L1 Bithead
  • 1529 Views
  • 1 replies
  • 0 Likes

Avoid using too many containers

Hello,

We're trying to avoid using too many containers. In order to reduce it, we have come up with two options for the automation:

  • Use the exact same container for automations (If they use the same libraries)
  • Or use the empty "Docker image name" opti
...

Josep_1-1679989178081.png
Josep by L4 Transporter
  • 4154 Views
  • 6 replies
  • 0 Likes

Resolved! Incidents in error - how to rerun last task?

Hi!

 

I often encounter errors in incidents due to temporary API integrations failure. I have some automated retries setup for each task which mitigate it somewhat. However if the failure lasts longer - incidents stop in error. I usually open each in

...

Antanas by L2 Linker
  • 3694 Views
  • 4 replies
  • 0 Likes

Multitenant and JOB

Hi everyone,
I use a multi-tenant structure. As you know, JOBs are not distributed between tenants.
I have more than twenty tenants. I want to create a structure that will send a notification in case any of them get an error in the integration (unable

...

Resolved! Context key reorganize

Hi!

 

I want to be able to manipulate context keys by selecting the keys I want, and moving them to upper level. E.g.: Assuming I have the following in the context:

 

I want to have a new context key with only Name and HairColor:

 

 

GetFields tran

...

f1.JPG
f2.JPG
Antanas by L2 Linker
  • 2325 Views
  • 4 replies
  • 0 Likes

Data Collection Fields

Hello all, 

Is there a way to add attachments to an email that is sent using the ask by email function under the data collection option? I am trying to link evidence to a case so the end user can view the evidence and then make decisions based off of

...

Resolved! CI/CD Process or Remote Repository UI on XSOAR

Hello,  

We are doubting whether to build a CI/CD Process or a Remote Repository UI on XSOAR. Looking to the table, CI/CD has more features. However, it doesn't allow you to work with Cortex XSOAR UI. This may mean that we will not be able to work wi

...

Josep_0-1678715052853.png
Josep by L4 Transporter
  • 2057 Views
  • 2 replies
  • 0 Likes

Cortex XSOAR / Let's Encrypt SSL Certificate

Hello,

 

For those who publicly expose Cortex XSOAR and want to use let's encrypt as their SSL certificate provider. Public exposure of Cortex XSOAR # is not recommended

 

You can have a look here : 

https://gist.github.com/lenoxys/e543cde35c3ff85f4c

...

  • 1252 Posts
  • 43 Subscriptions
Top Solution Authors
Top Liked Authors