Endpoint Enrichment - Generic v2
Deprecated. Use "Endpoint Enrichment - Generic v2.1" playbook instead. Enrich an endpoint by hostname using one or more integrations. Currently, the following integrations are supported: - Active Directory - McAfee ePolicy Orchestrator - Carbon Black Enterprise Response - Cylance Protect - CrowdStrike Falcon Host
- Pack
- DeprecatedContent
- Tasks
- 19
Inputs
- Hostname — The hostname of the endpoint to enrich.
Outputs
- Endpoint — The endpoint object of the endpoint that was enriched.
- Endpoint.Hostname — The hostnames of the endpoints that were enriched.
- Endpoint.OS — The operating systems running on the endpoints that were enriched.
- Endpoint.IP — A list of the IP addresses of the endpoints.
- Endpoint.MAC — A list of the MAC addresses of the endpoints that were enriched.
- Endpoint.Domain — The domain names of the endpoints that were enriched.
Commands used
- cb-sensor-info
- cylance-protect-get-devices
- epo-find-system