User Profile
Ely_Abramovitch
Former Employee
Joined 6 years ago
User Widgets
Recent Discussions
Re: Get entities for a Sentinel Incidient by API
Hi Jeroen, Adding entities to incidents is indeed planned. Stay tuned for updates on our blog for this. In the man time, another route you can take is by adding bookmarks to entities. In a bookmark you can map an entity and add it to the incident. Once you do, the entity will be added as well. Thanks, Ely9.4KViews0likes0CommentsRe: Custom Entities
Hi,Thijs Lecomte This is Ely from the product group. Supporting more entities as part of scheduled alerts is indeed required and planned. We are working on a solution to support a more flexible way to map entities that will support more entity types and more fields for each entity. The requirement for supporting arrays is a bit different and will require some thought. A short-term solution can be to use the mv-expand operator to create a line for each IP address and then map them using the regular way. You can then use the Alert Grouping feature (now available in public preview) to make sure you group the alerts as to not generate too many incidents.6.1KViews0likes2Comments