AlertEntity¶
SIEM Integration API schema.
This model wraps up an Alert. This contains various fields that contain information regarding the alert that was generated.
Fields¶
created_atstringThe date at which the alert was created.
customer_idstringThe unique identifier of the customer linked with this record.
dataobjectdescriptionstringThe description of the alert that was generated.
event_service_event_idstringThe Event Services event id.
idstringIdentifier for the alert.
infoobjectlocationstringThe location captured for this record.
severitystringThe severity for this alert.
Must be one of:
Must be one of:
LOW, MEDIUM, HIGH.sourcestringDescribes the source from alert was generated.
threatstringThe name of the threat responsible for the generation of alert.
threat_cleanablebooleantypestringDescribes the type of the device on which alert was generated.
whenstringThe date at which the alert was created.