Anomali ThreatStream Feed
Use the Anomali ThreatStream Feed Integration to fetch indicators from the Anomali ThreatStream.
- Category
- Data Enrichment & Threat Intelligence
- Pack
- AnomaliThreatStreamFeed
Configuration parameters
- feed — Fetch indicators
- fetchBy — Fetch by (required)
- url — Server URL (e.g., https://www.test.com) (required)
- credentials — Username (required)
- feedFetchInterval — Feed Fetch Interval
- confidenceThreshold — Confidence Threshold
- feedReliability — Source Reliability (required)
- tlp_color — Traffic Light Protocol Color
- feedReputation — Indicator Reputation
- feedExpirationPolicy —
- createRelationships — Create relationships
- insecure — Trust any certificate (not secure)
Commands (1)
- threatstream-feed-get-indicators — Gets indicators from the feed. This command is mainly used for testing and debugging purposes.