Infoblox-TIDE-Lookup-Via-Incident

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · 📊

Back to Content Index


The playbook takes entity type and value from incident available in Workbook and ingests TIDE Lookup data for that entity into Log table.

Attribute Value
Type Playbook
Solution Infoblox
Source View on GitHub

Additional Documentation

📄 Source: Infoblox TIDE Lookup Incident Based/readme.md

Infoblox TIDE Lookup Via Incident

Summary

The playbook takes entity type and value from incident available in Workbook and ingests TIDE Lookup data for that entity into Log table.

Prerequisites

  1. Make sure that Infoblox-TIDE-Lookup playbook is deployed before deploying Infoblox-TIDE-Lookup-Via-Incident playbook.

Deployment instructions

  1. To deploy the Playbook, click the Deploy to Azure button. This will launch the ARM Template deployment wizard.
  2. Fill in the required parameters:
    • Playbook Name: Enter the playbook name here

Deploy to Azure Deploy to Azure

Post-Deployment instructions

  1. In Microsoft sentinel, analytical rules should be configured to trigger an incident which has Entities Mapping.

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · 📊

Back to Playbooks · Back to Infoblox