SecurityInsightsGroupingConfiguration Class

Definition

Grouping configuration property bag.

public class SecurityInsightsGroupingConfiguration
type SecurityInsightsGroupingConfiguration = class
Public Class SecurityInsightsGroupingConfiguration
Inheritance
SecurityInsightsGroupingConfiguration

Constructors

SecurityInsightsGroupingConfiguration(Boolean, Boolean, TimeSpan, SecurityInsightsGroupingMatchingMethod)

Initializes a new instance of SecurityInsightsGroupingConfiguration.

Properties

GroupByAlertDetails

A list of alert details to group by (when matchingMethod is Selected).

GroupByCustomDetails

A list of custom details keys to group by (when matchingMethod is Selected). Only keys defined in the current alert rule may be used.

GroupByEntities

A list of entity types to group by (when matchingMethod is Selected). Only entities defined in the current alert rule may be used.

IsClosedIncidentReopened

Re-open closed matching incidents.

IsEnabled

Grouping enabled.

LookbackDuration

Limit the group to alerts created within the lookback duration (in ISO 8601 duration format).

MatchingMethod

Grouping matching method. When method is Selected at least one of groupByEntities, groupByAlertDetails, groupByCustomDetails must be provided and not empty.

Applies to