SymantecCloudSOCEventCollector
Gets Events from Symantec CloudSOC.
- Category
- Analytics & SIEM
- Pack
- SymantecCloudSOC
Configuration parameters
- url — Server URL (e.g., https://api.elastica.net/casb/) (required)
- credentials — Key ID (required)
- first_fetch — First fetch time (<number> <time unit>, e.g., 12 hours, 7 days) - within the last 12 months. Recommended time is 3 days.
- max_fetch — Maximum number of incidents per fetch.
Commands (1)
- symantec-cloudsoc-get-events — Gets events from Symantec CloudSOC.