TIM - ArcSight Add Url Indicators

This playbook queries indicators based on a pre-defined query or results from a parent playbook and adds the resulting indicators to an ArcSight Active List. The Active List ID should also be defined in the playbook inputs as well as the field name in the Active list to add to.

Pack
ArcSightESM
Tasks
13

Inputs

Commands used