Cortex XSOAR Discussions
Cortex XSOAR enables SOC analysts to manage alerts across all sources, standardize processes with playbooks, take action on threat intel, and automate response for any security use case.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Cortex XSOAR Discussions
Cortex XSOAR enables SOC analysts to manage alerts across all sources, standardize processes with playbooks, take action on threat intel, and automate response for any security use case.
About Cortex XSOAR Discussions
Cortex XSOAR enables SOC analysts to manage alerts across all sources, standardize processes with playbooks, take action on threat intel, and automate response for any security use case.

Discussions

Alerts are not fetched within time from QRadar

Hello Everyone,

 

Yesterday, I have observed delayed in offenses which comes from QRadar into XSOAR. I am confused with this type of behavior from XSOAR.

 

Offense which is triggered in QRadar : 29-03-2022 23:00PM

Same offense/Alerts is created in XSOAR :

...

Priyash7 by L0 Member
  • 1701 Views
  • 1 replies
  • 0 Likes

Resolved! ScriptA not calling ScriptB as expected

I have some automation that I'm working on and I am not seeing the expected results.  I broke the script down into the following simple version.

 

ScriptA which is:

demisto.executeCommand("ScriptB", {})

ScriptB which is:
return_results("ScriptB Called")

wh

...

jboyd98 by L2 Linker
  • 2390 Views
  • 3 replies
  • 0 Likes

Demo Data / Incidents

For purposes of demo'ing / mocking data for testing; how do you handle that....

 

Curious is there any import function to mock up incident data within XSOAR?

jboyd98 by L2 Linker
  • 2263 Views
  • 2 replies
  • 0 Likes

Resolved! XSOAR Qradar Integration Set Range Limit

Hi,

I succeeded XSOAR integration with Qradar. But I keep getting timeout warnings. I solved this problem by entering parameter "--env=REQUEST_TIME OUT=1500". But I caught that the real problem is in the query. To give an example of this, I enter the

...

[error 'open /proc/stat: too many open files']

Recently had some performance problems reported from my xsoar users.

Found a tenant crashing.  Upon investigating I found the following error in the logs:

App03 host:

error Couldn't calc cores number [error 'open /proc/stat: too many open files']error C

...

jboyd98_0-1646333459707.png
jboyd98_1-1646333459832.png
jboyd98_2-1646333459708.png
jboyd98 by L2 Linker
  • 2525 Views
  • 2 replies
  • 0 Likes
  • 1109 Posts
  • 34 Subscriptions