FireEyeFeed
FireEye Intelligence Feed Integration.
- Category
- Data Enrichment & Threat Intelligence
- Pack
- FeedFireEye
Configuration parameters
- feed — Fetch indicators
- feedReputation — Indicator Reputation
- feedReliability — Source Reliability (required)
- tlp_color — Traffic Light Protocol Color
- feedExpirationPolicy —
- feedExpirationInterval —
- feedFetchInterval — Feed Fetch Interval
- feedBypassExclusionList — Bypass exclusion list
- credentials — Public Key (required)
- collections_to_fetch — Collection(s) to fetch from feed (required)
- first_fetch_timestamp — First fetch time (<number> <time unit>, e.g., 12 hours, 7 days, 3 months, 1 year). Leave empty to fetch from the first indicator available.
- threshold — Malicious Threshold
- reputation_interval — Reputation Interval
- feedTags — Tags
- insecure — Trust any certificate (not secure)
- proxy — Use system proxy settings
- polling_timeout — Request Timeout
Commands (2)
- fireeye-get-indicators — Gets indicators from the feed.
- fireeye-reset-fetch-indicators — WARNING: This command will reset your fetch history.