Cortex XSOAR Discussions

Cortex XSOAR enables SOC analysts to manage alerts across all sources, standardize processes with playbooks, take action on threat intel, and automate response for any security use case.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Cortex XSOAR Discussions
Cortex XSOAR enables SOC analysts to manage alerts across all sources, standardize processes with playbooks, take action on threat intel, and automate response for any security use case.
About Cortex XSOAR Discussions
Cortex XSOAR enables SOC analysts to manage alerts across all sources, standardize processes with playbooks, take action on threat intel, and automate response for any security use case.

Discussions

Open zip file in automation

Hello,

I'm downloading a zip file via API with this request:

  • response = doHttpRequest(url=zip, method='GET', headers=headers)

it's supposed that my "response" variable now it's the zip file, however when I try to open, I can't, it's like it doesn't e

...

Josep by L4 Transporter
  • 1707 Views
  • 3 replies
  • 0 Likes

Script failed to run: Timeout Error: Docker code script failed due to timeout, consider changing timeout value for this automation, (2604) (2603)

 

We have a playbook task that sends a query to run on Splunk using the SplunkPy but it keeps failing and returning the following error
#22: Splunk Search Query


Command
!splunk-search query="index= test blah blah" earliest_time="1666679348" latest_ti

...

Resolved! Configuration file to playbook

Hi all,

I need to provide an externally uploaded configuration file to a playbook whose content varies periodically (it's a list of names). What is the best way to do this? The user who uploads the file can access the XSOAR GUI interface with an Anal

...

Rename XSOAR tenant

Receiving more business from a customer for some of their other entities.

 

I need to rename an XSOAR tenant to be more pointed - 

 

Is there any instructions on renaming.

Can i just stop the tenant and rename the folder on the backend; assume there's

...

JoshBoyd by L2 Linker
  • 1577 Views
  • 1 replies
  • 0 Likes

Phone call from XSOAR

How can i make Phone calls from a playbook?
I found the twilio integration which is able to send SMS, but I'd rather make a phone call to the incident manager somehow.
Have you found any solution to this?

Resolved! Timeout: Palo Alto Networks WildFire v2

Hello

 

I've configured the Palo Alto Networks WildFire v2 Service with a Wildfire-API Key from our Wildfire-Account at https://eu.wildfire.paloaltonetworks.com/wildfire/account

I also use this Server base URL: https://wildfire.paloaltonetworks.com/publ

...

Resolved! Xsoar - XDR Public API Unauthorised

I am having difficulty integrating the XDR Integration. I have followed the instructions and have generated an "Advanced Key", copied the Key and the Key ID + URL. I have inserted the relevant details on the Instance Settings. When I perform "Test" I

...

Resolved! split input to chunks with python

Hi,

 

I'm trying to build an automation which would take an array of objects as an input, split it to chunks of specified number and put in the context. E.g. I have 36 IP addresses, i want it to split to chunks of 10. The end result would be having t

...

Antanas_0-1665477516583.png
Antanas by L2 Linker
  • 3089 Views
  • 3 replies
  • 0 Likes

XSoar Integration with cisco firepower

Dears,

 

I installed cisco firepower integration. from Market Place.

 

I use update network group objects  command but actually it removes all the IP addresses inside this group and add the only list that I newly updated.

 

Kindly need your support.

...

Data presentation on XSOAR Web

Hi,

 

I have a use case where I want to share some sensitive data with users which should have an expiration date. I want data to be put on XSOAR web server, which I would have a link for and expire after certain time. I find similar funcionality wit

...

Antanas by L2 Linker
  • 1287 Views
  • 1 replies
  • 0 Likes

Questions for livebackup

Dears,

we now are installing a new server to be our live backup server, we have multiple questions regarding this Kindly need your answer :

1- Do we need a License for The Live backup Server????

2-Are the configuration and Data are moving in real time f

...

  • 1189 Posts
  • 40 Subscriptions
Top Solution Authors
Top Liked Authors