Cortex XSOAR Discussions
Cortex XSOAR enables SOC analysts to manage alerts across all sources, standardize processes with playbooks, take action on threat intel, and automate response for any security use case.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Cortex XSOAR Discussions
Cortex XSOAR enables SOC analysts to manage alerts across all sources, standardize processes with playbooks, take action on threat intel, and automate response for any security use case.
About Cortex XSOAR Discussions
Cortex XSOAR enables SOC analysts to manage alerts across all sources, standardize processes with playbooks, take action on threat intel, and automate response for any security use case.

Discussions

XSOAR CMDB - SQL issue

Hi everyone,

I'm trying to use Cortex XDR and Cortex XSOAR to build a basic CMDB
In my XSOAR playbook, I run an XDR XQL query, then try to insert the results into an SQL database using the sql-command automation.

The command looks like this:

INSERT INTO

...

tlmarques by L4 Transporter
  • 190 Views
  • 1 replies
  • 0 Likes

Problem with Cisco WSA Proxy integration

Hello Team,

 

I have a problem with Cisco WSA Proxy integration.

I'm trying to connect XSOAR with Cisco WSA Proxy through Cisco WSA v2 integration. The user for this API has full administrator rights, authentication is successful, and I get a respon

...

YuliyanD by L0 Member
  • 229 Views
  • 2 replies
  • 0 Likes

Where is the XSAOR 8 CLI Reference?

In the XSOAR 8.x documentation there are examples of CLI commands, including Integration commands, system commands, and information about how to escape specific characters.

However, try as I might, I can't seem to find an authoritative XSOAR CLI refer

...

mattem by L1 Bithead
  • 391 Views
  • 1 replies
  • 0 Likes

Customfield in JIRA

Hi,
I have integrated JIRA with XSOAR.
I have created a custom field in JIRA which has a dropdown list with options. I want the value to be populated in JIRA by XSOAR.
I am using jira edit issue automation where I am providing {"fields":{"customfield_xy

...

Himangi by L2 Linker
  • 197 Views
  • 1 replies
  • 0 Likes

Pre Processing Rules Logs

Dear Experts,

I have configured Cortex XSOAR to ingest cases/alerts, but for certain conditions, I want to prevent these from becoming incidents or triggering playbooks. I’ve created a script to drop alerts that meet specific criteria. However, I nee

...

Syedhkt by L2 Linker
  • 167 Views
  • 1 replies
  • 0 Likes

Resolved! 8.9 On-Prem Update Fails to Update

I have a very-small XSOAR setup of one dev and one prod server on-prem 8.9.0-8.9.0.140-b55c42e1. There are currently no workloads on these servers as they are replacing some 6.x servers that are in production currently. I received a notification afte

...

sackett by L1 Bithead
  • 308 Views
  • 1 replies
  • 0 Likes

Mass Closure of XSIAM Incidents

Hello team!
I would like to know if there is an option for mass closure of incidents in XSIAM.
I have the following scenario of 2000 open incidents and I would like to perform mass closure of these open cases. Is there any way to do this?

Resolved! Access a list from an integration

To access a list from an automation I use something like:

json = json.loads(demisto.executeCommand("getList", {"listName": "blabla"})

However, from an integration I cannot use the executeCommand method. Is there any way to access a list from an inte

...

rdevega by L1 Bithead
  • 3711 Views
  • 6 replies
  • 0 Likes
  • 1229 Posts
  • 43 Subscriptions
Top Solution Authors
Top Liked Authors