Recorded Future Identity
Fetch & triage | Search & Lookup | Access Recorded Future Identity data and Playbook Alerts.
- Category
- Data Enrichment & Threat Intelligence
- Pack
- IdentityRecordedFuture
Configuration parameters
- server_url — Server URL (e.g., https://api.recordedfuture.com/gw/xsoar-identity) (required)
- token — API Token
- credential —
- unsecure — Trust any certificate (not secure)
- proxy — Use system proxy settings
- isFetch — Fetch incidents
- incidentType — Incident type
- incidentFetchInterval — Incidents Fetch Interval
- first_fetch — First Incident Fetch: Time Range
- max_fetch — Maximum number of incidents per fetch
- pa_statuses — Playbook Alerts: Fetched Statuses
- pa_priorities — Playbook Alerts: Fetched Priorities Threshold
- password_properties — Password properties
- limit_identities — Limit of identities to get (min is 0 and max is 10 000)
- domains — Domains list separated by comma (e.g. norsegods.online, norsegods.online ). This will be used for identity search command as a default value. (required)
Commands (6)
- recordedfuture-identity-lookup — Lookup for identities in Recorded Future Identity Dataset.
- recordedfuture-identity-playbook-alerts-details — Get Playbook alert details by id.
- recordedfuture-identity-playbook-alerts-search — Search playbook alerts based on filters.
- recordedfuture-identity-playbook-alerts-update — Update the status of one or multiple Playbook alerts.
- recordedfuture-identity-search — Search for identities in Recorded Future Identity Dataset.
- recordedfuture-password-lookup — Lookup for password in Recorded Future Dataset.