public enum DataSourceReference documentation and code samples for the Chronicle v1 API enum DataSource.
LINT.IfChange(data_sources)
Namespace
Google.Cloud.Chronicle.V1Assembly
Google.Cloud.Chronicle.V1.dll
Fields |
|
|---|---|
| Name | Description |
DataTable |
DATA_TABLE is used for data tables source. |
Entity |
|
Global |
GLOBAL is used for standard time range filter. |
IngestionMetrics |
|
Investigation |
INVESTIGATION is used as the data source for triage agent investigations.
Identified as |
InvestigationFeedback |
INVESTIGATION_FEEDBACK is used as the data source for user feedback on
triage agent investigations. Identified as |
IocMatches |
IOC_MATCHES is used for ioc_matches datasource. |
RuleDetections |
RULE_DETECTIONS is used for detections datasource. |
Rules |
RULES is used for rules datasource. |
Rulesets |
RULESETS is used for ruleset with detections datasource. |
SoarCaseHistory |
SOAR Case History - identified as |
SoarCases |
SOAR Cases - identified as |
SoarPlaybooks |
SOAR Playbooks - identified as |
Udm |
|
Unspecified |
|