Cortex XSOAR Discussions
Cortex XSOAR enables SOC analysts to manage alerts across all sources, standardize processes with playbooks, take action on threat intel, and automate response for any security use case.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Cortex XSOAR Discussions
Cortex XSOAR enables SOC analysts to manage alerts across all sources, standardize processes with playbooks, take action on threat intel, and automate response for any security use case.
About Cortex XSOAR Discussions
Cortex XSOAR enables SOC analysts to manage alerts across all sources, standardize processes with playbooks, take action on threat intel, and automate response for any security use case.

Discussions

Cortex XSOAR integration

Hi, I want to poll for Status that is nested under Results. See below example :

I have this output when running the command tn-get-question-result

Tanium.QuestionResult
{
"QuestionID": "455036",
"Results": [
{
"ComputerName": "WIN-KBR5CNLJK52.icdc-caas.loca

...

LStanley by L0 Member
  • 2512 Views
  • 3 replies
  • 0 Likes

Resolved! ServiceNow pulling rasterized images

Hey all,

 

I am having trouble getting the SN integration to pull the rasterized images into a SN ticket with the 'servicenow-upload-file' automation.  I've tried to just upload all .png which seems to skip the rasterized images.   Also trying to pull

...

Resolved! Error while closing incident

Hi!

we are testing XSOAR on a local VM. We have created several incidents via an integration with our Threat intel solution.

When we are going to close an incident.. it doesn't close! 

We get no error from the UI. If we go to the VM console, from /var/l

...

migueltubia_0-1650377850811.png

ip list retention

Hi,

 

In our environment we have a list to hold ip addresses with comma seperated format, how can we provide data retention for each ip addresses within the list.

 

Regards.

Resolved! Automation "Remove From List" error

Hi,

 

One of my playbook includes a removefromlist automation but sometimes this step gives the error below, if this step is rerun without any change everything is ok. Do you have any idea why it needs to be rerun sometimes and any ideas about this err

...

Resolved! Do content pack updates require downtime

I need to update my QRadar Content Pack which also requires X dependencies be upgraded.

What is best practice for content package upgrades?
Is it as simple as installing from marketplace or do we have to run a sync after or cycle demisto after?

Other th

...

jboyd98 by L2 Linker
  • 1645 Views
  • 1 replies
  • 0 Likes

Resolved! Blueliv integration error

Hi!

 

we are testing XSOAR capacities. For testing purposes, we are creating an integration with our intel solution, Blueliv:

https://xsoar.pan.dev/docs/reference/integrations/blueliv-threat-compass

 

When fetching it returns an error. From the mapping ed

...

  • 1038 Posts
  • 32 Subscriptions
Top Liked Authors