Cortex XSOAR Discussions
Cortex XSOAR enables SOC analysts to manage alerts across all sources, standardize processes with playbooks, take action on threat intel, and automate response for any security use case.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Cortex XSOAR Discussions
Cortex XSOAR enables SOC analysts to manage alerts across all sources, standardize processes with playbooks, take action on threat intel, and automate response for any security use case.
About Cortex XSOAR Discussions
Cortex XSOAR enables SOC analysts to manage alerts across all sources, standardize processes with playbooks, take action on threat intel, and automate response for any security use case.

Discussions

Configure notification email on new incident

Hello,

 

I would like to enable email notifications for every new incident.

I've configured an O365 EWS instance successfully, and set server.notification.using.send-mail to use its instance name.

 

For now, I just want all notifications to be sent t

...

M.Nayet by L0 Member
  • 334 Views
  • 0 replies
  • 0 Likes

How do I send an alert to XSOAR?

I see the classify, map and playbook logic in XSOAR and I see that a playbook can ask/pull/poll for info *from* and external tool, which might be done through an integration.  But is there a way for an external tool to aynchronously *send/push* an *a

...

Obtaining Whois Information for a List of IPs

I'm trying to perform whois queries on an array that contains the list of IPs.

My understanding is that I can pass the array to the Inputs of the "ip (whois)" script.

However, since there are over 1000 IPs, submitting them all at once results in an e

...

R.Henmi by L0 Member
  • 595 Views
  • 1 replies
  • 0 Likes

Customize System Emails

I see there is documentation on customizing system emails: https://docs-cortex.paloaltonetworks.com/r/Cortex-XSOAR/8/Cortex-XSOAR-Administrator-Guide/Customize-System-Emails

 

I'm seeing placeholders such as {.username}} and  {.invName}}. Where i

...

Automated Daily Report for XDR and XSOAR?

Hi all and happy Taco Tuesday!

I'm part of a very small team of 3 that supports a retail company's domestic and international security & compliance operations, and I'm looking to automate some daily reporting that would ultimately be viewed in Conflue

...

Propagation Label

Hi all,
I imported a custom pack to XSOAR main account, but I don't want some tenants to use it so I want to use XSOAR propagation labels, but even if I set propagation labels, when I sync it distributes to tenants.
Do you have any suggestion?

  • 1281 Posts
  • 43 Subscriptions
Top Liked Posts
Top Liked Authors