ThreatIntelligenceAlertRuleProperties interface

Threat Intelligence alert rule base property bag.

Properties

alertRuleTemplateName

The Name of the alert rule template used to create this rule.

description

The description of the alert rule.

displayName

The display name for alerts created by this alert rule.

enabled

Determines whether this alert rule is enabled or disabled.

lastModifiedUtc

The last time that this alert has been modified.

severity

The severity for alerts created by this alert rule.

subTechniques

The sub-techniques of the alert rule

tactics

The tactics of the alert rule

techniques

The techniques of the alert rule

Property Details

alertRuleTemplateName

The Name of the alert rule template used to create this rule.

alertRuleTemplateName: string

Property Value

string

description

The description of the alert rule.

description?: string

Property Value

string

displayName

The display name for alerts created by this alert rule.

displayName?: string

Property Value

string

enabled

Determines whether this alert rule is enabled or disabled.

enabled: boolean

Property Value

boolean

lastModifiedUtc

The last time that this alert has been modified.

lastModifiedUtc?: Date

Property Value

Date

severity

The severity for alerts created by this alert rule.

severity?: string

Property Value

string

subTechniques

The sub-techniques of the alert rule

subTechniques?: string[]

Property Value

string[]

tactics

The tactics of the alert rule

tactics?: string[]

Property Value

string[]

techniques

The techniques of the alert rule

techniques?: string[]

Property Value

string[]