Block Domain - Generic v2
This playbook blocks malicious Domains using all integrations that are enabled. Supported integrations for this playbook: * Zscaler * Symantec Messaging Gateway * FireEye EX * Trend Micro Apex One * Proofpoint Threat Response * Cisco Stealthwatch Cloud
- Pack
- CommonPlaybooks
- Tasks
- 9
Inputs
- Domain — The Domain to block.
- DomainBlackListID — The Domain List ID to add the Domain to. product: Proofpoint Threat Response
- Tag — Tag to assign Domain to the External Dynamic List. sub-playbook: Block Domain - External Dynamic List
- Expiration — The UTC expiration date and time of the suspicious object, for example: 2020-01-25T09:00:00Z. Products: Trend Micro Apex One Proofpoint Threat Response