RecordedFuture-ImportToSentinel

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · Logic Apps · 📊

Back to Content Index


[Deprecated] Deprecated due to changes in the Threat Intelligence Platform. Use the new IndicatorImport playbooks that is provided in this Solution. This playbook is purposed to listen (via batching mechanism provided by Microsoft Azure) for incoming messages from the IndicatorProcessor Playbooks and create submit the indicators for creation

Attribute Value
Type Playbook
Solution Recorded Future
Source View on GitHub

Logic App Connectors

This playbook uses 1 Logic App connector / built-in action:

Connector / Action Type Connections Actions
microsoftgraphsecurity Managed 1 1
Action parameters (URLs, paths, function IDs)

microsoftgraphsecurity (Managed)

Action Method Endpoint Other
Submit_multiple_tiIndicators post /beta/security/tiIndicators/submitTiIndicators

Additional Documentation

📄 Source: Deprecated/RecordedFuture-ImportToSentinel/readme.md

[DEPRECATED]: Use the new RecordedFuture-ThreatIntelligenceImport playbook. Type: Detection Included in Recorded Future Intelligence Solution: Yes

Retrieves all Risk Lists (IOCs), and adds them to the ThreatIntelligenceIndicator table. All TIProcessor playbooks use this playbook.

Deploy to Azure Deploy to Azure Gov


Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · Logic Apps · 📊

Back to Playbooks · Back to Recorded Future