Crowdstrike Falcon - Unisolate Endpoint
This playbook unisolates devices according to the device ID that is provided in the playbook input.
- Pack
- CrowdStrikeFalcon
- Tasks
- 7
Inputs
- Endpoint_id — The endpoint ID/device ID that you want to unisolate.
Commands used
- cs-falcon-lift-host-containment
- cs-falcon-search-device