InfobloxThreatIntelligenceFeed
The Infoblox Threat Intelligence Feed retrieves the discovered indicators from the Infoblox platform based on user-specified filters.
- Category
- Data Enrichment & Threat Intelligence
- Pack
- FeedInfobloxThreatIntelligence
Configuration parameters
- api_key — (required)
- feed — Fetch indicators
- indicator_types — Indicator Types
- first_fetch — First Fetch Time
- max_fetch — Max Indicators Per Fetch
- dga_threat — DGA Threat
- threat_classes — Threat Classes
- data_provider_profiles — Data Providers
- feedReputation — Indicator Reputation
- feedReliability — Source Reliability (required)
- tlp_color — Traffic Light Protocol Color
- feedTags — Tags
- feedBypassExclusionList — Bypass exclusion list
- feedExpirationPolicy —
- feedExpirationInterval —
- feedFetchInterval — Feed Fetch Interval
- feedIncremental — Incremental Feed
- insecure — Trust any certificate (not secure)
- proxy — Use system proxy settings
Commands (1)
- infoblox-cloud-get-indicators — Fetches a given limit of indicators from the Infoblox platform and displays them in human-readable format in the war room.