CommvaultSecurityIQ
Commvault Cloud provides pre-built integrations, automation workflows, and playbooks to streamline operations, enhance threat intelligence integration, and gain actionable insights through advanced reporting and analytics.
- Category
- Analytics & SIEM
- Pack
- CommvaultSecurityIQ
Configuration parameters
- isFetch — Fetch incidents
- longRunning — Long running instance ( Only select it, if Fetch Incidents was not selected )
- CVWebserviceUrl — Commvault Webservice Url (required)
- CommvaultAPIToken — Commvault API Token (required)
- AzureKeyVaultUrl — Azure KeyVault Url
- AzureKeyVaultTenantId — Azure KeyVault Tenant ID
- AzureKeyVaultClientSecret — Azure KeyVault Client Secret
- AzureKeyVaultClientId — Azure KeyVault Client ID
- longRunningPort — Port mapping (<port> or <host port>:<docker port>)
- incidentType — Incident type
- incidentFetchInterval — Incidents Fetch Interval
- forwardingRule — Forwarding Rule
- first_fetch — First fetch timestamp (<number> <time unit>, e.g., 12 hours, 7 days)
- max_fetch — Max events to fetch
- creds_certificate — Certificate
- credentials — Webhook Listener Username
Commands (7)
- commvault-security-get-access-token-from-keyvault — Read the access token from KeyVault.
- commvault-security-get-copy-files-list-to-war-room — Copy the list of affected files list to war room.
- commvault-security-get-generate-token — Generate Token.
- commvault-security-set-cleanroom-add-vm-to-recovery-group — Add VM to Cleanroom.
- commvault-security-set-disable-data-aging — Disables data aging on CS.
- commvault-security-set-disable-saml-provider — Disable SAML provider.
- commvault-security-set-disable-user — Disables user.