McAfee Threat Intelligence Exchange
Deprecated. Use McAfee Threat Intelligence Exchange V2 integration instead.
- Category
- Data Enrichment & Threat Intelligence
- Pack
- McAfee-TIE
Configuration parameters
- broker_ca_bundle — Broker CA certificates content (see `brokercerts.crt` in Integration Tips) (required)
- cert_file — Client certificates content (see `client.crt` in Integration Tips) (required)
- private_key — Client private key content (e.g. `client.key`) (required)
- broker_urls — A CSV list of broker URLs in the format: [ssl://]<hostname>[:port]) Get the hostname and port from the `brokerlist.properties` file (in instructions). The broker should be reachable from Demisto server. (required)
- integrationReliability — Source Reliability
- feedExpirationPolicy —
- feedExpirationInterval —
Commands (3)
- file — Retrieves the reputations for the specified hash. Can be "MD5", "SHA1", or "SHA256".
- tie-file-references — Retrieves the set of systems which have referenced (typically executed) the specified file.
- tie-set-file-reputation — Sets the “Enterprise” reputation (trust level) of a specified file. Permissions are required to invoke this method. See the 'How-to' in instance instruction.