Cortex XSOAR Discussions
Cortex XSOAR enables SOC analysts to manage alerts across all sources, standardize processes with playbooks, take action on threat intel, and automate response for any security use case.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Cortex XSOAR Discussions
Cortex XSOAR enables SOC analysts to manage alerts across all sources, standardize processes with playbooks, take action on threat intel, and automate response for any security use case.
About Cortex XSOAR Discussions
Cortex XSOAR enables SOC analysts to manage alerts across all sources, standardize processes with playbooks, take action on threat intel, and automate response for any security use case.

Discussions

How to pull data from Servicenow and show in drop down

Hi All We have a requirement where the assignee name from servicenow , must be pulled into xSOAR and be displayed as a drop down Currently assignee is a text field Request your guidance on where I have to update for pulling as a drop down from servicenow instead of giving predefined values in xSOAR Thankyou aparna

aparnaas by L1 Bithead
  • 2029 Views
  • 1 replies
  • 0 Likes

Cortex XSOAR / Let's Encrypt SSL Certificate

Hello, For those who publicly expose Cortex XSOAR and want to use let's encrypt as their SSL certificate provider. Public exposure of Cortex XSOAR # is not recommended You can have a look here : https://gist.github.com/lenoxys/e543cde35c3ff85f4c44f9b802bb3a06 Regards, Aurelien

How to solve Timeout error in market place

I faced a Timeout error while performing firs time update on content packs via marketplace after my community edition installation and it took me some time in resolving it so wish to share the solution if you have Installed Community edition and if you face Timeout error while trying to update content pack for first time via market place mak...

Reopen selected incidents in "Investigation" tab

Hello, I'd like to reopen the incidents selected after a query in Search Incidents. Not the result of the query, only the selected ones after the query, I'm trying to use the API commando to open them: body = {"id":f"{incident}","version":version}uri = f"/investigation/{incident}/reopen"status = demisto.internalHttpRequest('POST', uri, body=bo...

Josep_0-1680255394333.png
Josep by L4 Transporter
  • 2434 Views
  • 1 replies
  • 0 Likes

Markdown table export issue with linked URLs in Demisto

Hello everyone, I'm encountering an issue with exporting a markdown table from Demisto. The table contains multiple name bindings with URLs, but when attempting to export it to CSV format, the names that are linked to URLs do not export properly. I have included some screenshots below to better illustrate the problem. Has anyone else experienced...

shreyash_412_1-1680781066362.png
shreyash_412_2-1680781094600.png

XSOAR customer support problems

I have noticed that many of my recent support cases are being lodged into the XSOAR Queue rather than being assigned a support case owner. Is anyone else having this problem and can anyone advise how I get an update for these cases. I have tried calling Palo Alto support but the automated system tells me I do not have phone support and hangs up.

Resolved! Not getting result of splunk query in xsoar

I am trying one splunk query to fetch some result in xsoar using automation splunk-search, but I am not getting any result in xsoar whereas for the same query I am getting result in splunk, can anyone please help, below is the query: index=cbuae_windows | search host IN(${incident.destinationhostname}) | stats values(Account_Domain) as Account_...

Himangi by L2 Linker
  • 2277 Views
  • 1 replies
  • 0 Likes

Passing a JSON Value to a JSON API Request

Hi All, I have faced one issue while sending a API call to IVANTI. I need to call one value into this request as below {"OrgUnitLink": "${org}","Symptom": "${body}","Subject": "${incident.labels.Email/subject}","Source": "Email","Status": "Submitted"} ${org} gets passed without an issue when I call it since the value is like asda232adadf334d Bu...

Json.PNG
Ivanti.PNG

Custom Web server on XSOAR

Hi, I'ld like to run a simple web server on demand, which would listen for POST requests and put the data posted in a file (or context). So far I achieved similar by modifying community integration XSOAR-Web-Server, which use long lasting instance mode and creates web server using Python Bottle. Server is started by an integration in a simple ...

Antanas by L2 Linker
  • 2235 Views
  • 3 replies
  • 0 Likes

XSOAR Lead Wanted

We are looking for a Cortex XSOAR lead to join our growing team! What better place to look for the right talent than in the Live Community!! DM for more information if you have the skillset, are motivated to succeed, and want to join a winning organization!

Resolved! Yara Rules error

Hi, Trying to use yarascan automation from yara pack on marketplace, always receiving "HasMatch: false" Here it goes the printscreen with the command and the contextdata showing the entryid The content has that rule Could you help? Regards, Fábio

FabioFerreira_0-1679411632399.png
FabioFerreira_1-1679411743582.png
  • 1298 Posts
  • 45 Subscriptions