InfobloxInsightIndicators_CL

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · Logic Apps · 📊

↑ Back to Tables Index


Internal Use Table: This table is created and used internally by the following solutions: Infoblox, Infoblox SOC Insights. It is written to by playbooks for solution-specific data storage.

Attribute Value
Category Internal
Ingestion API Supported ✓ Yes

Contents

Schema (24 columns)

Source: KQL validation test schema

Column Name Type
_ResourceId string
Computer string
confidence_level int
description string
detected_at string
first_detected string
InfobloxInsightID string
InfobloxInsightLogType string
last_detected string
ManagementGroupName string
MG string
RawData string
SourceSystem string
status dynamic
TenantId string
threat_actors dynamic
threat_indicator string
threat_level int
TimeGenerated datetime
total_events int
Type string
unverified_assets dynamic
users dynamic
verified_assets dynamic

Schema References

Official Microsoft Learn documentation for field/column information:

Solutions (2)

This table is used by the following solutions:


Content Items Using This Table (3)

Workbooks (2)

In solution Infoblox:

Workbook Selection Criteria
Infoblox_Workbook

In solution Infoblox SOC Insights:

Workbook Selection Criteria
InfobloxSOCInsightsWorkbook

Parsers Using This Table (2)

Other Parsers (2)

Parser Solution Selection Criteria
InfobloxInsightIndicators Infoblox
InfobloxInsightIndicators Infoblox SOC Insights

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · Logic Apps · 📊

↑ Back to Tables Index