Method: involvedEntities.patch

Full name: projects.locations.instances.cases.caseAlerts.involvedEntities.patch

Updates an existing InvolvedEntity. Use this method to modify core attributes like suspicion levels or os information.

HTTP request


PATCH https://chronicle.africa-south1.rep.googleapis.com/v1alpha/{involvedEntity.name}

Path parameters

Parameters
involvedEntity.name

string

Identifier. The unique name(ID) of the InvolvedEntity. Format: projects/{project}/locations/{location}/instances/{instance}/cases/{case}/caseAlerts/{caseAlert}/involvedEntities/{involvedEntity}

Query parameters

Parameters
updateMask

string (FieldMask format)

Optional. The list of fields to update. If not included, all fields with default/non-default values will be overwritten.

This is a comma-separated list of fully qualified names of fields. Example: "user.displayName,photo".

Request body

The request body contains an instance of InvolvedEntity.

Response body

If successful, the response body contains an instance of InvolvedEntity.

Authorization scopes

Requires one of the following OAuth scopes:

  • https://www.googleapis.com/auth/cloud-platform
  • https://www.googleapis.com/auth/chronicle
  • https://www.googleapis.com/auth/chronicle.readonly

For more information, see the Authentication Overview.

IAM Permissions

Requires the following IAM permission on the name resource:

  • chronicle.involvedEntities.update

For more information, see the IAM documentation.