Sooua
登录
返回文章列表
QRadar··1 分钟阅读

REST API 速查表

SEC: <authorized-service-token>

认证

SEC: <authorized-service-token>
Version: 26.0
Accept: application/json

SIEM API

操作方法端点
列出 OffensesGET/api/siem/offenses
获取 OffenseGET/api/siem/offenses/{id}
更新 OffensePOST/api/siem/offenses/{id}
关闭 OffensePOST/api/siem/offenses/{id}
列出 Source IPGET/api/siem/source_addresses
列出 Destination IPGET/api/siem/local_destination_addresses

Ariel API

操作方法端点
提交查询POST/api/ariel/searches
查询状态GET/api/ariel/searches/{search_id}
获取结果GET/api/ariel/searches/{search_id}/results
删除查询DELETE/api/ariel/searches/{search_id}

Reference Data API

操作方法端点
列出所有 SetGET/api/reference_data/sets
获取 SetGET/api/reference_data/sets/{name}
添加元素POST/api/reference_data/sets/{name}
删除元素DELETE/api/reference_data/sets/{name}/{value}
删除整个 SetDELETE/api/reference_data/sets/{name}

Log Source API

操作方法端点
列出日志源GET/api/config/event_sources/log_source_management/log_sources
创建日志源POST/api/config/event_sources/log_source_management/log_sources
获取日志源GET/api/config/event_sources/log_source_management/log_sources/{id}
更新日志源POST/api/config/event_sources/log_source_management/log_sources/{id}
删除日志源DELETE/api/config/event_sources/log_source_management/log_sources/{id}

系统 API

操作方法端点
系统信息GET/api/system/about
服务器列表GET/api/system/servers
部署配置GET/api/system/servers/{server_id}
生成报告POST/api/reports/{report_id}
分享

评论

登录 后参与讨论。

加载中…

相关文章