category: Endpoint sectionorder: - Connect - Collect provider: Ivanti commonfields: id: MobileIronCORE version: -1 configuration: - display: Fetch incidents name: isFetch type: 8 required: false section: Collect - defaultvalue: MobileIron Core Device Incident display: Incident type name: incidentType type: 13 required: false section: Collect - display: Incidents Fetch Interval name: incidentFetchInterval defaultvalue: '1' required: false type: 19 advanced: true section: Collect - display: Server URL (i.e., https://core.mobileiron.com ) name: url required: true type: 0 section: Connect - defaultvalue: '1' display: Admin Space ID (i.e., 1 for the global space ID) name: admin_space_id required: true type: 0 section: Connect - display: API User Credentials name: credentials required: true type: 9 section: Connect - defaultvalue: '50' display: Maximum number of incidents per fetch name: max_fetch type: 0 required: false section: Collect - display: Trust any certificate (not secure) name: insecure type: 8 required: false section: Connect - display: Use system proxy settings name: proxy type: 8 required: false section: Connect description: MobileIron CORE Integration. display: MobileIronCORE name: MobileIronCORE script: commands: - arguments: - description: The ID of the device to send a message to. name: device_id required: true - description: The subject of the email. name: subject required: true - description: The message of the email. name: message required: true - auto: PREDEFINED description: 'The type of message to send. Possible values are: "pns", "sms" and "email".' name: message_type predefined: - pns - sms - email required: true description: Sends a message to the particular device based on the device ID. name: mobileiron-core-send-message - arguments: - description: The ID of the device on which to update the operating system. name: device_id required: true description: Updates the operating system on the particular device based on the device ID. name: mobileiron-core-update-os - arguments: - description: The ID of the device to unlock. name: device_id required: true description: Unlocks the particular device based on the device ID. name: mobileiron-core-unlock-device-only - arguments: - description: The ID of the device on which to enable voice roaming. name: device_id required: true description: Enables voice roaming on the particular device based on the device ID. name: mobileiron-core-enable-voice-roaming - arguments: - description: The ID of the device on which to disable voice roaming. name: device_id required: true description: Disables voice roaming on the particular device based on the device ID. name: mobileiron-core-disable-voice-roaming - arguments: - description: The ID of the device on which to enable data roaming. name: device_id required: true description: Enables data roaming on the particular device based on the device ID. name: mobileiron-core-enable-data-roaming - arguments: - description: The ID of the device on which to disable data roaming. name: device_id required: true description: Disables data roaming on the particular device based on the device ID. name: mobileiron-core-disable-data-roaming - arguments: - description: The ID of the device on which to enable a personal hotspot. name: device_id required: true description: Enables a personal hotspot on the particular device based on the device ID. name: mobileiron-core-enable-personal-hotspot - arguments: - description: The ID of the device on which to disable a personal hotspot. name: device_id required: true description: Disables a personal hotspot on the particular device based on the device ID. name: mobileiron-core-disable-personal-hotspot - arguments: - description: The ID of the device on which to unlock an app connect container. name: device_id required: true description: Unlocks an app connect container on the particular device based on the device ID. name: mobileiron-core-unlock-app-connect-container - arguments: - description: The ID of the device to retire. name: device_id required: true description: Retires a device based on the device ID. name: mobileiron-core-retire-device - arguments: - description: ID of the device to wipe. name: device_id required: true description: Wipes a device based on the device ID. name: mobileiron-core-wipe-device - arguments: - description: ID of the device on which to force check in. name: device_id required: true description: Forces check in to the device based on the device ID. name: mobileiron-core-force-checkin - arguments: - default: true defaultValue: common.status = "ACTIVE" description: 'The query used to filter the list of devices. Default is: common.status = "ACTIVE".' name: query required: true - description: Comma-separated list of fields to query from the API. name: additional_fields - description: The maximum number of items to return. name: max_fetch description: Gets a list of devices matching the provided query. name: mobileiron-core-get-devices-data outputs: - contextPath: MobileIronCore.Device.common_model description: Model of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_os_version description: Operating system version of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_platform description: Platform name of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_status description: Status of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_imei description: International Mobile Equipment Identity (IMEI) of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_platform description: Platform of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_security_state description: Security state of the device that was fetched. type: String - contextPath: MobileIronCore.Device.user_display_name description: Display name of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_last_connected_at description: Date the device that was fetched was last connected. type: Date - contextPath: MobileIronCore.Device.common_uuid description: Device UUID of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_quarantined description: Whether the device was quarantined. type: Boolean - contextPath: MobileIronCore.Device.common_id description: ID of the device that was fetched. type: Number - contextPath: MobileIronCore.Device.common_imsi description: International mobile subscriber identity (IMSI) of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_owner description: Owner of the device that was fetched. type: String - contextPath: MobileIronCore.Device.user_email_address description: User email address of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_manufacturer description: Manufacturer of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_compliant description: Whether the device that was fetched is compliant. type: Boolean - contextPath: MobileIronCore.Device.user_user_id description: User ID of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_registration_date description: Registration date of the device that was fetched. type: Date - contextPath: MobileIronCore.Device.common_wifi_mac_address description: WiFi MAC address of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_noncompliance_reasons description: Non-compliance reasons for the device that was fetched. type: String - contextPath: MobileIronCore.Device.ios_iPhone_UDID description: iPhone UDID of the device that was fetched. type: String - contextPath: MobileIronCore.Device.ios_iPhone_MAC_ADDRESS_EN0 description: IPhone MAC address EN0 of the device that was fetched. type: String - contextPath: MobileIronCore.Device.ios_Current_MCC description: Current MCC of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_current_country_code description: Current country code of the device that was fetched. type: String - contextPath: MobileIronCore.Device.user_sam_account_name description: SAM account name of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_current_country_name description: Current country name of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_home_country_name description: Home country name of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_home_country_code description: Home country code of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_device_is_compromised description: Whether the device that was fetched was compromised. type: Boolean - contextPath: MobileIronCore.Device.common_SerialNumber description: Device serial number of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_mdm_managed description: Whether the device that was fetched is MDM managed. type: Boolean - arguments: - description: The UUID of the device to fetch. name: device_uuid required: true - description: Comma-separated list of fields to query from the API. name: additional_fields description: Gets a single device based on the device UUID. name: mobileiron-core-get-device-by-uuid outputs: - contextPath: MobileIronCore.Device.common_model description: Model of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_os_version description: Operating system version of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_platform description: Platform name of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_status description: Status of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_imei description: International Mobile Equipment Identity (IMEI) of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_platform description: Platform of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_security_state description: Security state of the device that was fetched. type: String - contextPath: MobileIronCore.Device.user_display_name description: Display name of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_last_connected_at description: Date the device that was fetched was last connected. type: Date - contextPath: MobileIronCore.Device.common_uuid description: Device UUID of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_quarantined description: Whether the device that was fetched was quarantined. type: Boolean - contextPath: MobileIronCore.Device.common_id description: ID of the device that was fetched. type: Number - contextPath: MobileIronCore.Device.common_imsi description: International mobile subscriber identity (IMSI) of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_owner description: Owner of the device that was fetched. type: String - contextPath: MobileIronCore.Device.user_email_address description: User email address of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_manufacturer description: Manufacturer of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_compliant description: Whether the device that was fetched was compliant. type: Boolean - contextPath: MobileIronCore.Device.user_user_id description: User ID of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_registration_date description: Registration date of the device that was fetched. type: Date - contextPath: MobileIronCore.Device.common_wifi_mac_address description: WiFi MAC address of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_noncompliance_reasons description: Non-compliance reasons for the device that was fetched. type: String - contextPath: MobileIronCore.Device.ios_iPhone_UDID description: iPhone UDID of the device that was fetched. type: String - contextPath: MobileIronCore.Device.ios_iPhone_MAC_ADDRESS_EN0 description: IPhone MAC address EN0 of the device that was fetched. type: String - contextPath: MobileIronCore.Device.ios_Current_MCC description: Current MCC of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_current_country_code description: Current country code of the device that was fetched. type: String - contextPath: MobileIronCore.Device.user_sam_account_name description: SAM account name of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_current_country_name description: Current country name of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_home_country_name description: Home country name of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_home_country_code description: Home country code of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_device_is_compromised description: Whether the device that was fetched was compromised. type: Boolean - contextPath: MobileIronCore.Device.common_SerialNumber description: Device serial number of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_mdm_managed description: Whether the device that was fetched is MDM managed. type: Boolean - arguments: - description: The serial number of the device to fetch. name: device_serial required: true - description: Comma-separated list of fields to query from the API. name: additional_fields description: Gets a single device based on the device serial number. name: mobileiron-core-get-device-by-serial outputs: - contextPath: MobileIronCore.Device.common_model description: Model of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_os_version description: Operating system version of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_platform description: Platform name of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_status description: Status of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_imei description: International Mobile Equipment Identity (IMEI) of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_platform description: Platform of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_security_state description: Security state of the device that was fetched. type: String - contextPath: MobileIronCore.Device.user_display_name description: Display name of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_last_connected_at description: Date the device that was fetched was last connected. type: Date - contextPath: MobileIronCore.Device.common_uuid description: Device UUID of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_quarantined description: Whether the device that was fetched was quarantined. type: Boolean - contextPath: MobileIronCore.Device.common_id description: ID of the device that was fetched. type: Number - contextPath: MobileIronCore.Device.common_imsi description: International mobile subscriber identity (IMSI) of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_owner description: Owner of the device that was fetched. type: String - contextPath: MobileIronCore.Device.user_email_address description: User email address of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_manufacturer description: Manufacturer of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_compliant description: Whether the device that was fetched was compliant. type: Boolean - contextPath: MobileIronCore.Device.user_user_id description: User ID of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_registration_date description: Registration date of the device that was fetched. type: Date - contextPath: MobileIronCore.Device.common_wifi_mac_address description: WiFi MAC address of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_noncompliance_reasons description: Non-compliance reasons for the device that was fetched. type: String - contextPath: MobileIronCore.Device.ios_iPhone_UDID description: iPhone UDID of the device that was fetched. type: String - contextPath: MobileIronCore.Device.ios_iPhone_MAC_ADDRESS_EN0 description: IPhone MAC address EN0 of the device that was fetched. type: String - contextPath: MobileIronCore.Device.ios_Current_MCC description: Current MCC of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_current_country_code description: Current country code of the device that was fetched. type: String - contextPath: MobileIronCore.Device.user_sam_account_name description: SAM account name of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_current_country_name description: Current country name of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_home_country_name description: Home country name of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_home_country_code description: Home country code of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_device_is_compromised description: Whether the device that was fetched was compromised. type: Boolean - contextPath: MobileIronCore.Device.common_SerialNumber description: Device serial number of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_mdm_managed description: Whether the device that was fetched is MDM managed. type: Boolean - arguments: - description: MAC address of the device to fetch. name: device_mac required: true - description: Comma-separated list of fields to query from the API. name: additional_fields description: Gets a single device based on the device WiFi MAC address. name: mobileiron-core-get-device-by-mac outputs: - contextPath: MobileIronCore.Device.common_model description: Model of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_os_version description: Operating system version of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_platform description: Platform name of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_status description: Status of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_imei description: International Mobile Equipment Identity (IMEI) of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_platform description: Platform of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_security_state description: Security state of the device that was fetched. type: String - contextPath: MobileIronCore.Device.user_display_name description: Display name of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_last_connected_at description: Date the device that was fetched was last connected. type: Date - contextPath: MobileIronCore.Device.common_uuid description: Device UUID of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_quarantined description: Whether the device that was fetched was quarantined. type: Boolean - contextPath: MobileIronCore.Device.common_id description: ID of the device that was fetched. type: Number - contextPath: MobileIronCore.Device.common_imsi description: International mobile subscriber identity (IMSI) of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_owner description: Owner of the device that was fetched. type: String - contextPath: MobileIronCore.Device.user_email_address description: User email address of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_manufacturer description: Manufacturer of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_compliant description: Whether the device that was fetched was compliant. type: Boolean - contextPath: MobileIronCore.Device.user_user_id description: User ID of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_registration_date description: Registration date of the device that was fetched. type: Date - contextPath: MobileIronCore.Device.common_wifi_mac_address description: WiFi MAC address of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_noncompliance_reasons description: Non-compliance reasons for the device that was fetched. type: String - contextPath: MobileIronCore.Device.ios_iPhone_UDID description: iPhone UDID of the device that was fetched. type: String - contextPath: MobileIronCore.Device.ios_iPhone_MAC_ADDRESS_EN0 description: IPhone MAC address EN0 of the device that was fetched. type: String - contextPath: MobileIronCore.Device.ios_Current_MCC description: Current MCC of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_current_country_code description: Current country code of the device that was fetched. type: String - contextPath: MobileIronCore.Device.user_sam_account_name description: SAM account name of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_current_country_name description: Current country name of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_home_country_name description: Home country name of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_home_country_code description: Home country code of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_device_is_compromised description: Whether the device that was fetched was compromised. type: Boolean - contextPath: MobileIronCore.Device.common_SerialNumber description: Device serial number of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_mdm_managed description: Whether the device that was fetched is MDM managed. type: Boolean - arguments: - description: IP address of the device to fetch. name: device_ip required: true - description: Comma-separated list of fields to query from the API. name: additional_fields description: Gets a single device based on the device IP address. name: mobileiron-core-get-device-by-ip outputs: - contextPath: MobileIronCore.Device.common_model description: Model of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_os_version description: Operating system version of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_platform description: Platform name of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_status description: Status of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_imei description: International Mobile Equipment Identity (IMEI) of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_platform description: Platform of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_security_state description: Security state of the device that was fetched. type: String - contextPath: MobileIronCore.Device.user_display_name description: Display name of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_last_connected_at description: Date the device that was fetched was last connected. type: Date - contextPath: MobileIronCore.Device.common_uuid description: Device UUID of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_quarantined description: Whether the device that was fetched was quarantined. type: Boolean - contextPath: MobileIronCore.Device.common_id description: ID of the device that was fetched. type: Number - contextPath: MobileIronCore.Device.common_imsi description: International mobile subscriber identity (IMSI) of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_owner description: Owner of the device that was fetched. type: String - contextPath: MobileIronCore.Device.user_email_address description: User email address of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_manufacturer description: Manufacturer of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_compliant description: Whether the device that was fetched was compliant. type: Boolean - contextPath: MobileIronCore.Device.user_user_id description: User ID of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_registration_date description: Registration date of the device that was fetched. type: Date - contextPath: MobileIronCore.Device.common_wifi_mac_address description: WiFi MAC address of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_noncompliance_reasons description: Non-compliance reasons for the device that was fetched. type: String - contextPath: MobileIronCore.Device.ios_iPhone_UDID description: iPhone UDID of the device that was fetched. type: String - contextPath: MobileIronCore.Device.ios_iPhone_MAC_ADDRESS_EN0 description: IPhone MAC address EN0 of the device that was fetched. type: String - contextPath: MobileIronCore.Device.ios_Current_MCC description: Current MCC of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_current_country_code description: Current country code of the device that was fetched. type: String - contextPath: MobileIronCore.Device.user_sam_account_name description: SAM account name of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_current_country_name description: Current country name of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_home_country_name description: Home country name of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_home_country_code description: Home country code of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_device_is_compromised description: Whether the device that was fetched was compromised. type: Boolean - contextPath: MobileIronCore.Device.common_SerialNumber description: Device serial number of the device that was fetched. type: String - contextPath: MobileIronCore.Device.common_mdm_managed description: Whether the device that was fetched is MDM managed. type: Boolean dockerimage: demisto/python3:3.12.13.10116658 isfetch: true runonce: false script: '-' subtype: python3 type: python tests: - No tests (auto formatted) defaultmapperin: MobileIron Incident Incoming Mapper fromversion: 6.0.0