Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · Logic Apps · 📊
| Attribute | Value |
|---|---|
| Ingestion API Supported | ✓ Yes |
Source: Data Collection Rule definition
| Column Name | Type |
|---|---|
| activityId | string |
| aiaScore | int |
| bestAssetName | string |
| currentGroup | string |
| customLabel | string |
| darktraceProduct | string |
| deviceHostname | string |
| deviceIdentifier | string |
| deviceIp | string |
| deviceMac | string |
| devices | dynamic |
| deviceSubnet | string |
| endTime | datetime |
| externalId | string |
| groupByActivity | boolean |
| groupCategory | string |
| groupingId | string |
| groupPreviousGroups | dynamic |
| groupScore | int |
| incidentEventTime | datetime |
| incidentEventTitle | string |
| latitude | real |
| longitude | real |
| newEvent | boolean |
| severity | int |
| startTime | datetime |
| summary | string |
| summaryFirstSentence | string |
| TimeGenerated | datetime |
| url | string |
Official Microsoft Learn documentation for field/column information:
This table is used by the following solutions:
This table is ingested by the following connectors:
| Connector | Selection Criteria |
|---|---|
| Darktrace ActiveAI Security Platform Connector |
In solution Darktrace:
| Analytic Rule | Selection Criteria |
|---|---|
| Darktrace Incident Event |
In solution Darktrace:
| Workbook | Selection Criteria |
|---|---|
| DarktraceActiveAISecurityPlatformWorkbook |
Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · Logic Apps · 📊