Title : (Preview) TI map IP entity to AzureActivity
Description : Identifies a match in AzureActivity from any IP IOC from TI
Severity : Medium
Number : 754
Label : {}
ProviderName : Azure Sentinel
Name : f5409f55-7dd8-4c73-9981-4627520b2db
This command lists all Incidents under a Microsoft Sentinel workspace.
Title : (Preview) TI map IP entity to AzureActivity
Description : Identifies a match in AzureActivity from any IP IOC from TI
Severity : Medium
Number : 754
Label : {}
ProviderName : Azure Sentinel
Name : f5409f55-7dd8-4c73-9981-4627520b2db
This command gets an Incident.
Parameters
-DefaultProfile
The DefaultProfile parameter is not functional.
Use the SubscriptionId parameter when available if executing the cmdlet against a different subscription.
Skiptoken is only used if a previous operation returned a partial result.
If a previous response contains a nextLink element, the value of the nextLink element will include a skiptoken parameter that specifies a starting point to use for subsequent calls.
Optional.
This cmdlet supports the common parameters: -Debug, -ErrorAction, -ErrorVariable,
-InformationAction, -InformationVariable, -OutBuffer, -OutVariable, -PipelineVariable,
-ProgressAction, -Verbose, -WarningAction, and -WarningVariable. For more information, see
about_CommonParameters.
The source for this content can be found on GitHub, where you can also create and review issues and pull requests. For more information, see our contributor guide.