FortiSIEM
Search and update events of FortiSIEM and manage resource lists.
- Category
- Analytics & SIEM
- Pack
- FortiSIEM
Configuration parameters
- isFetch — Fetch incidents
- incidentType — Incident type
- incidentFetchInterval — Incidents Fetch Interval
- host — Server URL (e.g. https://192.168.0.1) (required)
- credentials — Credentials (required)
- unsecure — Trust any certificate (not secure)
- proxy — Use system proxy settings
Commands (9)
- fortisiem-add-item-to-resource-list — add element to a resource list.
- fortisiem-clear-incident — Clear (close) a FortiSIEM incident.
- fortisiem-get-cmdb-devices — Returns the description of each device.
- fortisiem-get-events-by-filter — Returns an event list according to the specified filters.
- fortisiem-get-events-by-incident — Get events by incidents.
- fortisiem-get-events-by-query — Returns event list filtered by query.
- fortisiem-get-lists — Get all FortiSIEM resource lists hierarchy.
- fortisiem-get-resource-list — Lists all elements in a resource list.
- fortisiem-remove-item-from-resource-list — Removes elements from a resource list.