Finding suppressed incidents
Hello,
I need to make an HTTP request to get suppressed incidents from the main account. Is anyone has an idea how can a filter those incidents? Thanks!
Hello,
I need to make an HTTP request to get suppressed incidents from the main account. Is anyone has an idea how can a filter those incidents? Thanks!
Hi all
I would like to search in Cortex XSOAR for running timers that exceed a certain time. I tried it but it didn't worked out.
It should work like this that I can search for an timer (in this case detectionsla the total duration) and afterwards it s
Is it possible to automate deletion of phishing emails if the backend Exchange server is Exchange 2013? I noticed there is an integration for Exchange 2016 but I did not find one for Exchange 2013.
Any thoughts on why this is failing; this always returns Entries Found regardless if there are entities or not.
You can see in the screenshot above there are 0 results, no entries.
When I run this script, you'll see the screenshot below.
------Scrip
...
Hi everyone,
I was trying to make a playbook to extract indicators (Hash values, domains, IP addresses) from a PDF file. I tried to use the ReadPDFFile V2 utility, however it gives the below error on 2 of the PDF files I tried.
This command works:
demisto.executeCommand('setIncident', {'summary': "test"})`
Note: summary is a custom field of text.
This fails:
demisto.executeCommand('setIncident', {'sentinelclosereason': "JOSH"})
The only difference I can see is that sentinelclos
Onboarding to a new company.
No post processing on incident type (azure sentinel).
When a ticket is closed on the close form, we have a custom "Azure Closure Reason" and "Classification Comment"; based on this we have a script(CloseSentinelCase) that t
hi All,
I have changed my etc/demisto.conf file to move data folders(https://docs.paloaltonetworks.com/cortex/cortex-xsoar/6-2/cortex-xsoar-admin/manage-data/move-data-folders-to-another-location-on-the-server.html)
and after upgrading my app server
...
Hello ,
On of our customer is dependent on their partner for Minemeld EDL
The Partner is hosting the Minemeld server and now our customer is planning to build their own Minemeld
As Minemeld is no longer supported by PAN and is purely an open Source s
...
Hi everyone,
does anyone of you know how to check a custom indicator with !GetIndicatorDBotScore?
Due to the recent change in the URL indicator type's regex, we needed to create a new indicator type, that makes use of the old regex. Unfortunately this
...
Hello everyone;
Cortex:
The console reports 481 agents of which it gives with lost connection 110, in the licensing section it indicates 371 agents installed of the 500 licensed, so it seems that it does not take into account those of lost connection,
Hi everyone,
I'm facing a very strange issue. I've updated server version to 6.5 and loaded all images included in .tar file downloaded through personal link (27,2 GB) and testing integrations I used to take advantage when company didn't have antiviru
...
I have created a sub-playbook(which is running in a loop for multiple inputs) generating multiple files json's and csv's. I want to delete json's only and keep csv's for a single run and at the end of loop, I want only csv's.
How can I do that?
I have
...
Hi
Is anybody able to help me with upgrading my community edition of XSOAR ? I can't seem to find any reference to the original download and so the token element to the script is missing, am I able to register again for it ?
Any help is greatly app
...Subject | Likes |
---|---|
2 Likes Likes | |
1 Like Likes | |
1 Like Likes | |
1 Like Likes | |
1 Like Likes |
User | Likes Count |
---|---|
6 Likes | |
2 Likes | |
2 Likes | |
1 Likes | |
1 Likes |