RFI_PlaybookAlertResults_V2_CL

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · Logic Apps · 📊

↑ Back to Tables Index


Attribute Value
Ingestion API Supported ✓ Yes

Contents

Schema (11 columns)

Source: KQL validation test schema

Column Name Type
alert_description string
panel_evidence_summary dynamic
panel_status dynamic
panel_status_alert_rule_id string
panel_status_alert_rule_name string
panel_status_created datetime
panel_status_entity_name string
panel_status_priority string
panel_status_status string
playbook_alert_id string
TimeGenerated datetime

Schema References

Official Microsoft Learn documentation for field/column information:

Solutions (1)

This table is used by the following solutions:

Connectors (1)

This table is ingested by the following connectors:

Connector Selection Criteria
Recorded Future Identity - Playbook Alert Importer

Content Items Using This Table (1)

Analytic Rules (1)

In solution Recorded Future Identity:

Analytic Rule Selection Criteria
Recorded Future Identity - Credential Exposure Detected

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · Logic Apps · 📊

↑ Back to Tables Index