Skip to content

Get FalconIoaSeverity

bk-cs edited this page Apr 28, 2023 · 19 revisions

Get-FalconIoaSeverity

SYNOPSIS

Search for custom Indicator of Attack severity levels

DESCRIPTION

Requires 'Custom IOA rules: Read'.

PARAMETERS

Name Type Description Min Max Allowed Pipeline PipelineByName
Id String[] Severity identifier critical
high
medium
low
informational
X X
Limit Int32 Maximum number of results per request 1 500
Offset Int32 Position to begin retrieving results
Detailed Switch Retrieve detailed information
All Switch Repeat requests until all available results are retrieved
Total Switch Display total result count instead of results

SYNTAX

Get-FalconIoaSeverity [[-Limit] <Int32>] [-Offset <Int32>] [-Detailed] [-All] [-Total] [-WhatIf] [-Confirm] [<CommonParameters>]
Get-FalconIoaSeverity -Id <String[]> [-WhatIf] [-Confirm] [<CommonParameters>]

REFERENCE

Endpoints

GET /ioarules/entities/pattern-severities/v1
GET /ioarules/queries/pattern-severities/v1

falconpy

query_patterns
get_patterns

USAGE

Find custom IOA severities

Get-FalconIoaSeverity [-Detailed]

2023-04-25: PSFalcon v2.2.5

Clone this wiki locally