Sophos Central
The unified console for managing Sophos products.
- Category
- Data Enrichment & Threat Intelligence
- Pack
- SophosCentral
Configuration parameters
- credentials — Client ID (required)
- tenant_id — Tenant ID
- isFetch — Fetch incidents
- fetch_severity — Fetch Severity
- fetch_category — Fetch Category
- max_fetch — Fetch Limit
- first_fetch — First fetch timestamp (<number> <time unit>, e.g., 12 hours, 7 days)
- proxy — Use system proxy settings
- incidentType — Incident type
- incidentFetchInterval — Incidents Fetch Interval
Commands (58)
- sophos-central-alert-action — Perform an action on the alerts.
- sophos-central-alert-get — Get a single alert by ID.
- sophos-central-alert-list — List alerts.
- sophos-central-alert-search — Get alerts matching request.
- sophos-central-allowed-item-add — Add a new allowed item.
- sophos-central-allowed-item-delete — Delete an existing allowed item.
- sophos-central-allowed-item-get — Get a single allowed item by ID.
- sophos-central-allowed-item-list — List all allowed items.
- sophos-central-allowed-item-update — Update an existing allowed item.
- sophos-central-blocked-item-add — Add a new blocked item.
- sophos-central-blocked-item-delete — Delete an existing blocked item.
- sophos-central-blocked-item-get — Get a single blocked item by ID.
- sophos-central-blocked-item-list — Get all blocked items.
- sophos-central-deisolate-endpoint — Initiate de-isolation request on the endpoint(s).
- sophos-central-detected-exploit-get — Get a single detected exploit.
- sophos-central-detected-exploit-list — List all detected exploits.
- sophos-central-endpoint-list — List all endpoints for a tenant.
- sophos-central-endpoint-policy-clone — Clone an existing endpoint policy.
- sophos-central-endpoint-policy-get — Get details of Policy by id.
- sophos-central-endpoint-policy-reorder — Update Policy priority for non-base policies.
- sophos-central-endpoint-policy-search — Get all endpoint policy.
- sophos-central-endpoint-policy-search-delete — Delete an existing endpoint policy.
- sophos-central-endpoint-scan — Scan endpoints of a tenant.
- sophos-central-endpoint-tamper-get — Get tamper protection information for one or more endpoints. Potentially harmful because of the password.
- sophos-central-endpoint-tamper-update — Update tamper protection information for one or more endpoints. Potentially harmful because of the password.
- sophos-central-exploit-mitigation-add — Exclude a set of file paths from exploit mitigation.
- sophos-central-exploit-mitigation-delete — Delete a custom (user-defined) Exploit Mitigation application by ID.
- sophos-central-exploit-mitigation-get — Get Exploit Mitigation settings for a single application.
- sophos-central-exploit-mitigation-list — List exploit mitigation settings for all protected applications.
- sophos-central-exploit-mitigation-update — Update Exploit Mitigation settings for an application.
- sophos-central-group-create — Create a new endpoint group.
- sophos-central-group-delete — Delete an endpoint group by ID.
- sophos-central-group-endpoint-remove — Remove endpoint from a group.
- sophos-central-group-endpoints-add — Add endpoints in a group.
- sophos-central-group-endpoints-remove — Remove endpoints from a group.
- sophos-central-group-get — Get an endpoint group by ID.
- sophos-central-group-list — List endpoint groups.
- sophos-central-group-membership-get — Get endpoints in a group.
- sophos-central-group-update — Update an endpoint group.
- sophos-central-isolate-endpoint — Initiate isolation request on the endpoint(s).
- sophos-central-scan-exclusion-add — Add a new scan exclusion.
- sophos-central-scan-exclusion-delete — Delete an existing scan exclusion.
- sophos-central-scan-exclusion-get — Get a single scan exclusion by ID.
- sophos-central-scan-exclusion-list — List all scan exclusions.
- sophos-central-scan-exclusion-update — Update an existing scan exclusion.
- sophos-central-usergroups-create — Creates a new “custom” (Centrally Managed) Group.
- sophos-central-usergroups-delete — Deletes the specified group.
- sophos-central-usergroups-get — Returns the details of the GroupID specified.
- sophos-central-usergroups-list — Returns a list of all user groups that match the search criteria (optional).
- sophos-central-usergroups-membership-get — List all users in a specific group.
- sophos-central-usergroups-update — Allows for the editing of the group name and description for a usergroup.
- sophos-central-usergroups-user-delete — Remove a specific User from the group.
- sophos-central-usergroups-users-add — Add multiple users to the specified group.
- sophos-central-users-add — Add a new user.
- sophos-central-users-delete — Delete a user.
- sophos-central-users-get — List user with userId for the given tenant.
- sophos-central-users-list — List users for the given tenant.
- sophos-central-users-update — Update a user.