GCenter 103
This integration fetch events generated by the GCenter appliance.
- Category
- Network Security
- Pack
- Gatewatcher-AionIQ
Configuration parameters
- ip — GCenter IP address or FQDN (required)
- token —
- credentials — GCenter account
- version — GCenter Version
- check_cert — Check the TLS certificate
- proxy — Use system proxy settings
- isFetch — Fetch incidents
- fetch_type — Fetch incidents from type
- engine_selection — Engine alerts selection
- first_fetch — First fetch
- max_fetch — Fetch limit
- incidentType — Incident type
- incidentFetchInterval — Incidents Fetch Interval
Commands (33)
- gcenter103-alerts-get — Get an alert with its UUID (corresponds to event.id field) or the GCenter ID of the alert.
- gcenter103-alerts-list — List all alerts.
- gcenter103-alerts-note-add — Add or update a note to an alert.
- gcenter103-alerts-note-remove — Delete the note of an alert.
- gcenter103-alerts-status-update — Update status of an alert.
- gcenter103-alerts-tags-add — Add or update tags of an alert.
- gcenter103-alerts-tags-get — Get the tags of an alert.
- gcenter103-alerts-tags-remove — Remove tags from an alert.
- gcenter103-assets-alerts-get — Retrieve alerts of a given asset.
- gcenter103-assets-get — Retrieve specific asset data.
- gcenter103-assets-list — List all assets.
- gcenter103-assets-note-add — Add or update a note to an asset.
- gcenter103-assets-note-remove — Remove a note from an asset.
- gcenter103-assets-tags-add — Add or update the tags of an asset.
- gcenter103-assets-tags-get — Get the tags of an asset.
- gcenter103-assets-tags-remove — Remove tags of an asset.
- gcenter103-file-scan — Scan a file on a selected engine. You must upload the file to scan before execution.
- gcenter103-file-scan-result-get — Retrieve previous scan by its ID.
- gcenter103-malcore-fingerprints-add — Add fingerprints to white or black list to Malcore.
- gcenter103-malcore-fingerprints-get — Get fingerprints of the white or black list of Malcore.
- gcenter103-malcore-fingerprints-remove — Remove fingerprints to white or black list to Malcore.
- gcenter103-raw-alerts-file-get — Get a file attached to an alert with its UUID.
- gcenter103-raw-alerts-get — Get a raw alert with its UUID.
- gcenter103-users-alerts-get — Retrieves a list of the alerts of a Kerberos user.
- gcenter103-users-get — Retrieves Kerberos user data.
- gcenter103-users-list — Retrieves a list of Kerberos users.
- gcenter103-users-note-add — Add or update the note of a Kerberos user.
- gcenter103-users-note-remove — Remove the note of a Kerberos user.
- gcenter103-users-tags-add — Add or update the tags of a Kerberos user.
- gcenter103-users-tags-get — Get the tags of a Kerberos user.
- gcenter103-users-tags-remove — Remove tags of a Kerberos user.
- gcenter103-yara-rules-add — Add YARA rules to Malcore. You must upload the YARA file before execution.
- gcenter103-yara-rules-get — Get YARA settings.