Gurucul-GRA
Gurucul Risk Analytics (GRA) is a Unified Security and Risk Analytics platform.
- Category
- Data Enrichment & Threat Intelligence
- Pack
- Gurucul
Configuration parameters
- url — Server URL (e.g. https://example.net) (required)
- apikey — Authorization Key (required)
- insecure — Trust any certificate (not secure)
- proxy — Use system proxy settings
- isFetch — Fetch incidents
- incidentType — Incident type
- incidentFetchInterval — Incidents Fetch Interval
- first_fetch — First fetch time
- max_fetch — Maximum number of incidents per fetch
Commands (20)
- gra-analytical-features-entity-value — Retrieve analytical features for specified entity value, model name and dates.
- gra-case-action — Close a case and update the anomaly status as Closed / Risk Managed / Model Reviewed.
- gra-case-action-anomaly — Close an anomaly or anomalies within a case and update the anomaly status as Closed / Risk Managed / Model Reviewed.
- gra-cases — Retrieve list of all cases for specified status.
- gra-cases-anomaly — Retrieve anomalies for specified case id.
- gra-fetch-accounts — Retrieve list of all accounts.
- gra-fetch-active-resource-accounts — Retrieve list of all active accounts for specified resource.
- gra-fetch-hpa — Retrieve list of all high risk privileged accounts.
- gra-fetch-orphan-accounts — Retrieve list of all orphan / rogue accounts.
- gra-fetch-resource-highrisk-accounts — Retrieve high risk accounts for specified resource.
- gra-fetch-resource-hpa — Retrieve all high privileged accounts for specified resource.
- gra-fetch-resource-orphan-accounts — Retrieve all orphan / rogue accounts for specified resource.
- gra-fetch-user-accounts — Retrieve list of all active accounts and details for specified user identity.
- gra-fetch-users — Retrieve list of all users (identities).
- gra-fetch-users-details — Retrieve details for specified user.
- gra-highRisk-users — Retrieve list of all high risk users.
- gra-investigate-anomaly-summary — Retrieve detailed anomaly summary of specified anomaly name.
- gra-user-activities — Retrieve activity for specified user.
- gra-user-anomalies — Retrieve list of anomalies for specified user.
- gra-validate-api — Verifies the Gurucul platform's operational status by assessing system health, reviewing logs, and checking key performance indicators for any errors.