Sentinel One - Query Endpoints
Runs Query on Endpoints for SHA1 values
- Pack
- SentinelOne
- Tasks
- 7
Inputs
- sha1 — Comma seperated strings of SHA1 hashes.
- interval — Frequency that the polling command will run (minutes).
- timeout — Amount of time to poll before declaring a timeout and resuming the playbook (in minutes).
Commands used
- sentinelone-create-query
- sentinelone-get-events