Summary of entries of Classes for google-cloud-chronicle.
Classes
BigQueryExportServiceAsyncClient
Service for managing BigQuery export configurations for Chronicle instances.
BigQueryExportServiceClient
Service for managing BigQuery export configurations for Chronicle instances.
DashboardChartServiceAsyncClient
A service providing functionality for managing dashboards' charts.
DashboardChartServiceClient
A service providing functionality for managing dashboards' charts.
DashboardQueryServiceAsyncClient
A service providing functionality for managing dashboards' queries.
DashboardQueryServiceClient
A service providing functionality for managing dashboards' queries.
DataAccessControlServiceAsyncClient
DataAccessControlService exposes resources and endpoints related to data access control.
DataAccessControlServiceClient
DataAccessControlService exposes resources and endpoints related to data access control.
ListDataAccessLabelsAsyncPager
A pager for iterating through list_data_access_labels requests.
This class thinly wraps an initial
ListDataAccessLabelsResponse object, and
provides an __aiter__ method to iterate through its
data_access_labels field.
If there are more pages, the __aiter__ method will make additional
ListDataAccessLabels requests and continue to iterate
through the data_access_labels field on the
corresponding responses.
All the usual ListDataAccessLabelsResponse attributes are available on the pager. If multiple requests are made, only the most recent response is retained, and thus used for attribute lookup.
ListDataAccessLabelsPager
A pager for iterating through list_data_access_labels requests.
This class thinly wraps an initial
ListDataAccessLabelsResponse object, and
provides an __iter__ method to iterate through its
data_access_labels field.
If there are more pages, the __iter__ method will make additional
ListDataAccessLabels requests and continue to iterate
through the data_access_labels field on the
corresponding responses.
All the usual ListDataAccessLabelsResponse attributes are available on the pager. If multiple requests are made, only the most recent response is retained, and thus used for attribute lookup.
ListDataAccessScopesAsyncPager
A pager for iterating through list_data_access_scopes requests.
This class thinly wraps an initial
ListDataAccessScopesResponse object, and
provides an __aiter__ method to iterate through its
data_access_scopes field.
If there are more pages, the __aiter__ method will make additional
ListDataAccessScopes requests and continue to iterate
through the data_access_scopes field on the
corresponding responses.
All the usual ListDataAccessScopesResponse attributes are available on the pager. If multiple requests are made, only the most recent response is retained, and thus used for attribute lookup.
ListDataAccessScopesPager
A pager for iterating through list_data_access_scopes requests.
This class thinly wraps an initial
ListDataAccessScopesResponse object, and
provides an __iter__ method to iterate through its
data_access_scopes field.
If there are more pages, the __iter__ method will make additional
ListDataAccessScopes requests and continue to iterate
through the data_access_scopes field on the
corresponding responses.
All the usual ListDataAccessScopesResponse attributes are available on the pager. If multiple requests are made, only the most recent response is retained, and thus used for attribute lookup.
DataTableServiceAsyncClient
DataTableManager provides an interface for managing data tables.
DataTableServiceClient
DataTableManager provides an interface for managing data tables.
ListDataTableRowsAsyncPager
A pager for iterating through list_data_table_rows requests.
This class thinly wraps an initial
ListDataTableRowsResponse object, and
provides an __aiter__ method to iterate through its
data_table_rows field.
If there are more pages, the __aiter__ method will make additional
ListDataTableRows requests and continue to iterate
through the data_table_rows field on the
corresponding responses.
All the usual ListDataTableRowsResponse attributes are available on the pager. If multiple requests are made, only the most recent response is retained, and thus used for attribute lookup.
ListDataTableRowsPager
A pager for iterating through list_data_table_rows requests.
This class thinly wraps an initial
ListDataTableRowsResponse object, and
provides an __iter__ method to iterate through its
data_table_rows field.
If there are more pages, the __iter__ method will make additional
ListDataTableRows requests and continue to iterate
through the data_table_rows field on the
corresponding responses.
All the usual ListDataTableRowsResponse attributes are available on the pager. If multiple requests are made, only the most recent response is retained, and thus used for attribute lookup.
ListDataTablesAsyncPager
A pager for iterating through list_data_tables requests.
This class thinly wraps an initial
ListDataTablesResponse object, and
provides an __aiter__ method to iterate through its
data_tables field.
If there are more pages, the __aiter__ method will make additional
ListDataTables requests and continue to iterate
through the data_tables field on the
corresponding responses.
All the usual ListDataTablesResponse attributes are available on the pager. If multiple requests are made, only the most recent response is retained, and thus used for attribute lookup.
ListDataTablesPager
A pager for iterating through list_data_tables requests.
This class thinly wraps an initial
ListDataTablesResponse object, and
provides an __iter__ method to iterate through its
data_tables field.
If there are more pages, the __iter__ method will make additional
ListDataTables requests and continue to iterate
through the data_tables field on the
corresponding responses.
All the usual ListDataTablesResponse attributes are available on the pager. If multiple requests are made, only the most recent response is retained, and thus used for attribute lookup.
EntityServiceAsyncClient
EntityService contains apis for finding entities.
EntityServiceClient
EntityService contains apis for finding entities.
ListWatchlistsAsyncPager
A pager for iterating through list_watchlists requests.
This class thinly wraps an initial
ListWatchlistsResponse object, and
provides an __aiter__ method to iterate through its
watchlists field.
If there are more pages, the __aiter__ method will make additional
ListWatchlists requests and continue to iterate
through the watchlists field on the
corresponding responses.
All the usual ListWatchlistsResponse attributes are available on the pager. If multiple requests are made, only the most recent response is retained, and thus used for attribute lookup.
ListWatchlistsPager
A pager for iterating through list_watchlists requests.
This class thinly wraps an initial
ListWatchlistsResponse object, and
provides an __iter__ method to iterate through its
watchlists field.
If there are more pages, the __iter__ method will make additional
ListWatchlists requests and continue to iterate
through the watchlists field on the
corresponding responses.
All the usual ListWatchlistsResponse attributes are available on the pager. If multiple requests are made, only the most recent response is retained, and thus used for attribute lookup.
FeaturedContentNativeDashboardServiceAsyncClient
This service provides functionality for managing FeaturedContentNativeDashboard.
FeaturedContentNativeDashboardServiceClient
This service provides functionality for managing FeaturedContentNativeDashboard.
ListFeaturedContentNativeDashboardsAsyncPager
A pager for iterating through list_featured_content_native_dashboards requests.
This class thinly wraps an initial
ListFeaturedContentNativeDashboardsResponse object, and
provides an __aiter__ method to iterate through its
featured_content_native_dashboards field.
If there are more pages, the __aiter__ method will make additional
ListFeaturedContentNativeDashboards requests and continue to iterate
through the featured_content_native_dashboards field on the
corresponding responses.
All the usual ListFeaturedContentNativeDashboardsResponse attributes are available on the pager. If multiple requests are made, only the most recent response is retained, and thus used for attribute lookup.
ListFeaturedContentNativeDashboardsPager
A pager for iterating through list_featured_content_native_dashboards requests.
This class thinly wraps an initial
ListFeaturedContentNativeDashboardsResponse object, and
provides an __iter__ method to iterate through its
featured_content_native_dashboards field.
If there are more pages, the __iter__ method will make additional
ListFeaturedContentNativeDashboards requests and continue to iterate
through the featured_content_native_dashboards field on the
corresponding responses.
All the usual ListFeaturedContentNativeDashboardsResponse attributes are available on the pager. If multiple requests are made, only the most recent response is retained, and thus used for attribute lookup.
FeedsServiceAsyncClient
FeedsService contains procedures for managing Chronicle third-party feeds.
FeedsServiceClient
FeedsService contains procedures for managing Chronicle third-party feeds.
ListFeedPacksAsyncPager
A pager for iterating through list_feed_packs requests.
This class thinly wraps an initial
ListFeedPacksResponse object, and
provides an __aiter__ method to iterate through its
feed_packs field.
If there are more pages, the __aiter__ method will make additional
ListFeedPacks requests and continue to iterate
through the feed_packs field on the
corresponding responses.
All the usual ListFeedPacksResponse attributes are available on the pager. If multiple requests are made, only the most recent response is retained, and thus used for attribute lookup.
ListFeedPacksPager
A pager for iterating through list_feed_packs requests.
This class thinly wraps an initial
ListFeedPacksResponse object, and
provides an __iter__ method to iterate through its
feed_packs field.
If there are more pages, the __iter__ method will make additional
ListFeedPacks requests and continue to iterate
through the feed_packs field on the
corresponding responses.
All the usual ListFeedPacksResponse attributes are available on the pager. If multiple requests are made, only the most recent response is retained, and thus used for attribute lookup.
ListFeedSourceTypeSchemasAsyncPager
A pager for iterating through list_feed_source_type_schemas requests.
This class thinly wraps an initial
ListFeedSourceTypeSchemasResponse object, and
provides an __aiter__ method to iterate through its
feed_source_type_schemas field.
If there are more pages, the __aiter__ method will make additional
ListFeedSourceTypeSchemas requests and continue to iterate
through the feed_source_type_schemas field on the
corresponding responses.
All the usual ListFeedSourceTypeSchemasResponse attributes are available on the pager. If multiple requests are made, only the most recent response is retained, and thus used for attribute lookup.
ListFeedSourceTypeSchemasPager
A pager for iterating through list_feed_source_type_schemas requests.
This class thinly wraps an initial
ListFeedSourceTypeSchemasResponse object, and
provides an __iter__ method to iterate through its
feed_source_type_schemas field.
If there are more pages, the __iter__ method will make additional
ListFeedSourceTypeSchemas requests and continue to iterate
through the feed_source_type_schemas field on the
corresponding responses.
All the usual ListFeedSourceTypeSchemasResponse attributes are available on the pager. If multiple requests are made, only the most recent response is retained, and thus used for attribute lookup.
ListFeedsAsyncPager
A pager for iterating through list_feeds requests.
This class thinly wraps an initial
ListFeedsResponse object, and
provides an __aiter__ method to iterate through its
feeds field.
If there are more pages, the __aiter__ method will make additional
ListFeeds requests and continue to iterate
through the feeds field on the
corresponding responses.
All the usual ListFeedsResponse attributes are available on the pager. If multiple requests are made, only the most recent response is retained, and thus used for attribute lookup.
ListFeedsPager
A pager for iterating through list_feeds requests.
This class thinly wraps an initial
ListFeedsResponse object, and
provides an __iter__ method to iterate through its
feeds field.
If there are more pages, the __iter__ method will make additional
ListFeeds requests and continue to iterate
through the feeds field on the
corresponding responses.
All the usual ListFeedsResponse attributes are available on the pager. If multiple requests are made, only the most recent response is retained, and thus used for attribute lookup.
ListLogTypeSchemasAsyncPager
A pager for iterating through list_log_type_schemas requests.
This class thinly wraps an initial
ListLogTypeSchemasResponse object, and
provides an __aiter__ method to iterate through its
log_type_schemas field.
If there are more pages, the __aiter__ method will make additional
ListLogTypeSchemas requests and continue to iterate
through the log_type_schemas field on the
corresponding responses.
All the usual ListLogTypeSchemasResponse attributes are available on the pager. If multiple requests are made, only the most recent response is retained, and thus used for attribute lookup.
ListLogTypeSchemasPager
A pager for iterating through list_log_type_schemas requests.
This class thinly wraps an initial
ListLogTypeSchemasResponse object, and
provides an __iter__ method to iterate through its
log_type_schemas field.
If there are more pages, the __iter__ method will make additional
ListLogTypeSchemas requests and continue to iterate
through the log_type_schemas field on the
corresponding responses.
All the usual ListLogTypeSchemasResponse attributes are available on the pager. If multiple requests are made, only the most recent response is retained, and thus used for attribute lookup.
FindingsRefinementServiceAsyncClient
FindingsRefinementService provides an interface for filtering out findings that are unlikely to be real threats to prevent them from triggering alerts or notifications.
FindingsRefinementServiceClient
FindingsRefinementService provides an interface for filtering out findings that are unlikely to be real threats to prevent them from triggering alerts or notifications.
ListAllFindingsRefinementDeploymentsAsyncPager
A pager for iterating through list_all_findings_refinement_deployments requests.
This class thinly wraps an initial
ListAllFindingsRefinementDeploymentsResponse object, and
provides an __aiter__ method to iterate through its
all_findings_refinement_deployments field.
If there are more pages, the __aiter__ method will make additional
ListAllFindingsRefinementDeployments requests and continue to iterate
through the all_findings_refinement_deployments field on the
corresponding responses.
All the usual ListAllFindingsRefinementDeploymentsResponse attributes are available on the pager. If multiple requests are made, only the most recent response is retained, and thus used for attribute lookup.
ListAllFindingsRefinementDeploymentsPager
A pager for iterating through list_all_findings_refinement_deployments requests.
This class thinly wraps an initial
ListAllFindingsRefinementDeploymentsResponse object, and
provides an __iter__ method to iterate through its
all_findings_refinement_deployments field.
If there are more pages, the __iter__ method will make additional
ListAllFindingsRefinementDeployments requests and continue to iterate
through the all_findings_refinement_deployments field on the
corresponding responses.
All the usual ListAllFindingsRefinementDeploymentsResponse attributes are available on the pager. If multiple requests are made, only the most recent response is retained, and thus used for attribute lookup.
ListFindingsRefinementsAsyncPager
A pager for iterating through list_findings_refinements requests.
This class thinly wraps an initial
ListFindingsRefinementsResponse object, and
provides an __aiter__ method to iterate through its
findings_refinements field.
If there are more pages, the __aiter__ method will make additional
ListFindingsRefinements requests and continue to iterate
through the findings_refinements field on the
corresponding responses.
All the usual ListFindingsRefinementsResponse attributes are available on the pager. If multiple requests are made, only the most recent response is retained, and thus used for attribute lookup.
ListFindingsRefinementsPager
A pager for iterating through list_findings_refinements requests.
This class thinly wraps an initial
ListFindingsRefinementsResponse object, and
provides an __iter__ method to iterate through its
findings_refinements field.
If there are more pages, the __iter__ method will make additional
ListFindingsRefinements requests and continue to iterate
through the findings_refinements field on the
corresponding responses.
All the usual ListFindingsRefinementsResponse attributes are available on the pager. If multiple requests are made, only the most recent response is retained, and thus used for attribute lookup.
InstanceServiceAsyncClient
InstanceService provides the entry interface for the Chronicle API.
InstanceServiceClient
InstanceService provides the entry interface for the Chronicle API.
NativeDashboardServiceAsyncClient
A service providing functionality for managing native dashboards.
NativeDashboardServiceClient
A service providing functionality for managing native dashboards.
ListNativeDashboardsAsyncPager
A pager for iterating through list_native_dashboards requests.
This class thinly wraps an initial
ListNativeDashboardsResponse object, and
provides an __aiter__ method to iterate through its
native_dashboards field.
If there are more pages, the __aiter__ method will make additional
ListNativeDashboards requests and continue to iterate
through the native_dashboards field on the
corresponding responses.
All the usual ListNativeDashboardsResponse attributes are available on the pager. If multiple requests are made, only the most recent response is retained, and thus used for attribute lookup.
ListNativeDashboardsPager
A pager for iterating through list_native_dashboards requests.
This class thinly wraps an initial
ListNativeDashboardsResponse object, and
provides an __iter__ method to iterate through its
native_dashboards field.
If there are more pages, the __iter__ method will make additional
ListNativeDashboards requests and continue to iterate
through the native_dashboards field on the
corresponding responses.
All the usual ListNativeDashboardsResponse attributes are available on the pager. If multiple requests are made, only the most recent response is retained, and thus used for attribute lookup.
ReferenceListServiceAsyncClient
ReferenceListService provides an interface for managing reference lists.
ReferenceListServiceClient
ReferenceListService provides an interface for managing reference lists.
ListReferenceListsAsyncPager
A pager for iterating through list_reference_lists requests.
This class thinly wraps an initial
ListReferenceListsResponse object, and
provides an __aiter__ method to iterate through its
reference_lists field.
If there are more pages, the __aiter__ method will make additional
ListReferenceLists requests and continue to iterate
through the reference_lists field on the
corresponding responses.
All the usual ListReferenceListsResponse attributes are available on the pager. If multiple requests are made, only the most recent response is retained, and thus used for attribute lookup.
ListReferenceListsPager
A pager for iterating through list_reference_lists requests.
This class thinly wraps an initial
ListReferenceListsResponse object, and
provides an __iter__ method to iterate through its
reference_lists field.
If there are more pages, the __iter__ method will make additional
ListReferenceLists requests and continue to iterate
through the reference_lists field on the
corresponding responses.
All the usual ListReferenceListsResponse attributes are available on the pager. If multiple requests are made, only the most recent response is retained, and thus used for attribute lookup.
RuleExecutionErrorServiceAsyncClient
RuleExecutionErrorService contains endpoints related to rule execution errors.
RuleExecutionErrorServiceClient
RuleExecutionErrorService contains endpoints related to rule execution errors.
ListRuleExecutionErrorsAsyncPager
A pager for iterating through list_rule_execution_errors requests.
This class thinly wraps an initial
ListRuleExecutionErrorsResponse object, and
provides an __aiter__ method to iterate through its
rule_execution_errors field.
If there are more pages, the __aiter__ method will make additional
ListRuleExecutionErrors requests and continue to iterate
through the rule_execution_errors field on the
corresponding responses.
All the usual ListRuleExecutionErrorsResponse attributes are available on the pager. If multiple requests are made, only the most recent response is retained, and thus used for attribute lookup.
ListRuleExecutionErrorsPager
A pager for iterating through list_rule_execution_errors requests.
This class thinly wraps an initial
ListRuleExecutionErrorsResponse object, and
provides an __iter__ method to iterate through its
rule_execution_errors field.
If there are more pages, the __iter__ method will make additional
ListRuleExecutionErrors requests and continue to iterate
through the rule_execution_errors field on the
corresponding responses.
All the usual ListRuleExecutionErrorsResponse attributes are available on the pager. If multiple requests are made, only the most recent response is retained, and thus used for attribute lookup.
RuleServiceAsyncClient
RuleService provides interface for user-created rules.
RuleServiceClient
RuleService provides interface for user-created rules.
ListRetrohuntsAsyncPager
A pager for iterating through list_retrohunts requests.
This class thinly wraps an initial
ListRetrohuntsResponse object, and
provides an __aiter__ method to iterate through its
retrohunts field.
If there are more pages, the __aiter__ method will make additional
ListRetrohunts requests and continue to iterate
through the retrohunts field on the
corresponding responses.
All the usual ListRetrohuntsResponse attributes are available on the pager. If multiple requests are made, only the most recent response is retained, and thus used for attribute lookup.
ListRetrohuntsPager
A pager for iterating through list_retrohunts requests.
This class thinly wraps an initial
ListRetrohuntsResponse object, and
provides an __iter__ method to iterate through its
retrohunts field.
If there are more pages, the __iter__ method will make additional
ListRetrohunts requests and continue to iterate
through the retrohunts field on the
corresponding responses.
All the usual ListRetrohuntsResponse attributes are available on the pager. If multiple requests are made, only the most recent response is retained, and thus used for attribute lookup.
ListRuleDeploymentsAsyncPager
A pager for iterating through list_rule_deployments requests.
This class thinly wraps an initial
ListRuleDeploymentsResponse object, and
provides an __aiter__ method to iterate through its
rule_deployments field.
If there are more pages, the __aiter__ method will make additional
ListRuleDeployments requests and continue to iterate
through the rule_deployments field on the
corresponding responses.
All the usual ListRuleDeploymentsResponse attributes are available on the pager. If multiple requests are made, only the most recent response is retained, and thus used for attribute lookup.
ListRuleDeploymentsPager
A pager for iterating through list_rule_deployments requests.
This class thinly wraps an initial
ListRuleDeploymentsResponse object, and
provides an __iter__ method to iterate through its
rule_deployments field.
If there are more pages, the __iter__ method will make additional
ListRuleDeployments requests and continue to iterate
through the rule_deployments field on the
corresponding responses.
All the usual ListRuleDeploymentsResponse attributes are available on the pager. If multiple requests are made, only the most recent response is retained, and thus used for attribute lookup.
ListRuleRevisionsAsyncPager
A pager for iterating through list_rule_revisions requests.
This class thinly wraps an initial
ListRuleRevisionsResponse object, and
provides an __aiter__ method to iterate through its
rules field.
If there are more pages, the __aiter__ method will make additional
ListRuleRevisions requests and continue to iterate
through the rules field on the
corresponding responses.
All the usual ListRuleRevisionsResponse attributes are available on the pager. If multiple requests are made, only the most recent response is retained, and thus used for attribute lookup.
ListRuleRevisionsPager
A pager for iterating through list_rule_revisions requests.
This class thinly wraps an initial
ListRuleRevisionsResponse object, and
provides an __iter__ method to iterate through its
rules field.
If there are more pages, the __iter__ method will make additional
ListRuleRevisions requests and continue to iterate
through the rules field on the
corresponding responses.
All the usual ListRuleRevisionsResponse attributes are available on the pager. If multiple requests are made, only the most recent response is retained, and thus used for attribute lookup.
ListRulesAsyncPager
A pager for iterating through list_rules requests.
This class thinly wraps an initial
ListRulesResponse object, and
provides an __aiter__ method to iterate through its
rules field.
If there are more pages, the __aiter__ method will make additional
ListRules requests and continue to iterate
through the rules field on the
corresponding responses.
All the usual ListRulesResponse attributes are available on the pager. If multiple requests are made, only the most recent response is retained, and thus used for attribute lookup.
ListRulesPager
A pager for iterating through list_rules requests.
This class thinly wraps an initial
ListRulesResponse object, and
provides an __iter__ method to iterate through its
rules field.
If there are more pages, the __iter__ method will make additional
ListRules requests and continue to iterate
through the rules field on the
corresponding responses.
All the usual ListRulesResponse attributes are available on the pager. If multiple requests are made, only the most recent response is retained, and thus used for attribute lookup.
AWSEC2HostsSettings
AWS EC2 Hosts Settings.
AWSEC2InstancesSettings
AWS EC2 Instances Settings.
AWSEC2VpcsSettings
AWS EC2 Vpcs Settings.
AWSIAMSettings
AWSIAMSettings contains details needed for creating an AWS IAM feed.
ApiType
API Type
AddChartRequest
Request message to add chart in a dashboard.
AddChartResponse
Response message for adding chart in a dashboard.
AdditionalS3AccessKeySecretAuth
Additional S3 access key secret auth.
AdvancedFilterConfig
Advanced filter configuration for the filter widget.
ManualOptions
Manual options provided by the user.
QueryOptions
Query options to fetch the values from the query engine. This is used for the filter's population query.
ValueSource
Source of the values for the filter.
This message has oneof_ fields (mutually exclusive fields).
For each oneof, at most one member field can be set at the same time.
Setting any member of the oneof automatically clears all other
members.
.. _oneof: https://proto-plus-python.readthedocs.io/en/stable/fields.html#oneofs-mutually-exclusive-fields
AmazonKinesisFirehoseSettings
Settings required by Amazon Kinesis Firehose Feeds(HTTP-Push).
AmazonS3Settings
Amazon S3 settings.
AmazonS3V2Settings
AmazonS3V2Settings is the settings proto for Omniflow S3 feeds.
AmazonSQSSettings
Amazon SQS settings.
AmazonSQSV2Settings
AmazonSQSV2Settings is the settings proto for Omniflow SQS feeds.
AnomaliIocSettings
Anomali IOC settings.
AxisType
AzureADAuditSettings
Azure AD Audit settings.
AzureADContextSettings
Azure AD Context settings.
AzureADSettings
Azure AD settings.
AzureAuth
Azure auth.
This message has oneof_ fields (mutually exclusive fields).
For each oneof, at most one member field can be set at the same time.
Setting any member of the oneof automatically clears all other
members.
.. _oneof: https://proto-plus-python.readthedocs.io/en/stable/fields.html#oneofs-mutually-exclusive-fields
AzureAuthV2
A message containing fields used to authenticate with Azure Blob Storage.
This message has oneof_ fields (mutually exclusive fields).
For each oneof, at most one member field can be set at the same time.
Setting any member of the oneof automatically clears all other
members.
.. _oneof: https://proto-plus-python.readthedocs.io/en/stable/fields.html#oneofs-mutually-exclusive-fields
AzureBlobStoreSettings
Azure Blob Storage settings.
AzureBlobStoreV2Settings
AzureBlobStoreV2Settings is the settings proto for Azure Blob Storage feeds.
AzureEventHubSettings
Settings required by Azure Event Hub Feeds.
AzureMDMIntuneSettings
Azure MDM Intune settings.
AzureV2WorkloadIdentityFederation
Azure V2 Workload Identity Federation.
BatchGetDashboardChartsRequest
Request message to get dashboard charts in batch.
BatchGetDashboardChartsResponse
Response message for getting dashboard charts in batch.
BigQueryExport
This resource represents the BigQuery export configuration for a Chronicle instance which includes Google Cloud Platform resources like Cloud Storage buckets, BigQuery datasets etc and the export settings for each data source.
BigQueryExportPackage
The BigQueryExportPackage entitled for the Chronicle instance.
BulkCreateDataTableRowsRequest
Request to create data table rows in bulk.
BulkCreateDataTableRowsResponse
Response message with created data table rows.
BulkGetDataTableRowsRequest
Request to get data table rows in bulk.
BulkGetDataTableRowsResponse
Response message with data table rows.
BulkReplaceDataTableRowsRequest
Request to replace data table rows in bulk.
BulkReplaceDataTableRowsResponse
Response message with data table rows that replaced existing data table rows.
BulkUpdateDataTableRowsRequest
Request to update data table rows in bulk.
BulkUpdateDataTableRowsResponse
Response message with updated data table rows.
Button
Button config for a chart.
Properties
ButtonStyle
Claims
Claims identifying a specific customer.
CloudPassageSettings
CloudPassage settings.
ColumnMetadata
Metadata of the column.
CompilationDiagnostic
CompilationDiagnostic represents a compilation diagnostic generated during a rule's compilation, such as a compilation error or a compilation warning.
Severity
The severity level of the compilation diagnostic.
CompilationPosition
CompilationPosition represents the location of a compilation diagnostic in rule text.
ComputeAllFindingsRefinementActivitiesRequest
Request message for ComputeAllFindingsRefinementActivities method.
ComputeAllFindingsRefinementActivitiesResponse
Response message for ComputeAllFindingsRefinementActivities method.
ComputeFindingsRefinementActivityRequest
Request message for ComputeFindingsRefinementActivity method.
ComputeFindingsRefinementActivityResponse
Response message for ComputeFindingsRefinementActivity method.
CortexXDRSettings
PAN Cortex XDR settings.
CreateDataAccessLabelRequest
Request message for CreateDataAccessLabel.
CreateDataAccessScopeRequest
Request message for CreateDataAccessScope.
CreateDataTableRequest
A request to create DataTable.
CreateDataTableRowRequest
Request to create data table row.
CreateFeedRequest
Request message for CreateFeed.
CreateFindingsRefinementRequest
Request message for CreateFindingsRefinement method.
CreateNativeDashboardRequest
Request message to create a dashboard.
CreateReferenceListRequest
A request to create a reference list.
CreateRetrohuntRequest
Request message for CreateRetrohunt method.
CreateRuleRequest
Request message for CreateRule method.
CreateWatchlistRequest
Request message for creating watchlist.
CrowdStrikeAlertsSettings
CrowdStrike Alerts settings.
IngestionType
Ingestion Type.
CrowdStrikeDetectsSettings
CrowdStrike Detects settings.
IngestionType
Ingestion Type.
CustomAPICheckpointConfig
Checkpoint configuration to enable sequential (cursor-based) polling.
This message has oneof_ fields (mutually exclusive fields).
For each oneof, at most one member field can be set at the same time.
Setting any member of the oneof automatically clears all other
members.
.. _oneof: https://proto-plus-python.readthedocs.io/en/stable/fields.html#oneofs-mutually-exclusive-fields
IteratorStrategy
Use progress tokens provided by the API.
LatestRecordStrategy
Track the highest record ID to fetch only new records next.
LatestTimestampStrategy
Track the timestamp of the newest record to fetch newer ones next.
NoneStrategy
Fetch all available data in one go without tracking progress.
CustomAPIDependentRequestsConfig
Configuration for dependent requests (child chaining).
CustomAPIHeaderAuth
CustomAPIHeaderAuth lists HTTP headers for custom API auth.
CustomAPIHeaderKeyValue
CustomAPIHeaderKeyValue defines dynamic headers key-values for Custom API.
CustomAPINoAuth
Info for No-Authentication custom API feeds.
CustomAPIPagination
Pagination strategy for the request.
This message has oneof_ fields (mutually exclusive fields).
For each oneof, at most one member field can be set at the same time.
Setting any member of the oneof automatically clears all other
members.
.. _oneof: https://proto-plus-python.readthedocs.io/en/stable/fields.html#oneofs-mutually-exclusive-fields
LinkPagination
Follow links provided in the response to get more data.
NonePagination
Fetch data in a single request without paging.
OffsetPagination
Skip a set number of records to get the next set.
PageNumberPagination
Go to the next page number (e.g., page 2).
TokenPagination
Use tokens (custom keys) to get the next page of data.
CustomAPIQueryAuth
CustomAPIQueryAuth lists URL Query parameters for custom API auth.
CustomAPIQueryKeyValue
CustomAPIQueryKeyValue defines dynamic query parameters key-values for Custom API Auth.
CustomAPIRequestConfig
Configuration for the outgoing API request.
HttpMethod
HTTPS methods supported.
CustomAPIResponseConfig
Configuration for handling the API response.
CustomAPISettings
Settings required by Feeds of Custom API (Codeless). Supports fetching data from third-party APIs with configurable pagination, authentication, and response parsing.
This message has oneof_ fields (mutually exclusive fields).
For each oneof, at most one member field can be set at the same time.
Setting any member of the oneof automatically clears all other
members.
.. _oneof: https://proto-plus-python.readthedocs.io/en/stable/fields.html#oneofs-mutually-exclusive-fields
CustomAPITransferNode
Container for a specific API interaction.
DashboardAccess
AccessType of the dashboard.
DashboardChart
DashboardChart resource.
ChartDatasource
Datasource of the chart including the query reference and source name.
DrillDownConfig
Drill down configuration.
DrillDown
Drill down config.
This message has oneof_ fields (mutually exclusive fields).
For each oneof, at most one member field can be set at the same time.
Setting any member of the oneof automatically clears all other
members.
.. _oneof: https://proto-plus-python.readthedocs.io/en/stable/fields.html#oneofs-mutually-exclusive-fields
CustomDrillDownSettings
Custom drill down settings.
This message has oneof_ fields (mutually exclusive fields).
For each oneof, at most one member field can be set at the same time.
Setting any member of the oneof automatically clears all other
members.
.. _oneof: https://proto-plus-python.readthedocs.io/en/stable/fields.html#oneofs-mutually-exclusive-fields
DrillDownExternalLink
Drill down external link config.
DrillDownFilter
Drill down filter config.
DrillDownDashboardFilter
Drill down dashboard filter config.
DrillDownQuery
Drill down query config.
DefaultDrillDownSettings
Default drill down settings.
Visualization
Visualization config for a chart. https://echarts.apache.org/en/option.html#series
Axis
.. _oneof: https://proto-plus-python.readthedocs.io/en/stable/fields.html#oneofs-mutually-exclusive-fields
ColumnDef
Column Definition.
ColumnRenderTypeSettings
Column render type settings. This is used to determine the data render type of the column in the table.
ColumnTooltipSettings
Settings for tooltip for column header and cell.
GoogleMapsConfig
Google Maps config for a chart if chart type is map.
DataSettings
Data settings for the map.
MapPosition
Map position settings for the map.
PointSettings
Point settings for the map.
Legend
Series
AreaStyle
Custom styling for area chart
ChartSliceColor
Slice containing the key and value for a slice in the chart
DataLabel
Data label config for a series.
Encode
GaugeConfig
Field to be saved for retrieving value and color for gauge chart
GaugeValue
Field to be saved for retrieving value and color for gauge chart
ItemColors
Field to be saved for retrieving slice colors for the chart
ItemStyle
Custom styling for chart
MetricTrendConfig
Metric trend config for displaying trend value in Metrics chart
UserSelectedValues
User selected color and label for the slice of the chart
TableConfig
Configuration for table appearance.
Tooltip
VisualMap
Conveys what range of values should be rendered in what color. This field is used when threshold_coloring_enabled is true.
VisualMapPiece
An ECharts visual map of type 'piecewise' contain many pieces. Each piece has a min, max, and color with which it's rendered.
.. _oneof: https://proto-plus-python.readthedocs.io/en/stable/fields.html#oneofs-mutually-exclusive-fields
DashboardDefinition
Definition of the dashboard including filters, layout, charts' configurations.
ChartConfig
Configuration of the chart including chart reference, layout and filters.
ChartLayout
Layout of the chart.
.. _oneof: https://proto-plus-python.readthedocs.io/en/stable/fields.html#oneofs-mutually-exclusive-fields
DashboardFilter
Dashboard level filter that can be used in native dashboards as well as inputs to execute query.
.. _oneof: https://proto-plus-python.readthedocs.io/en/stable/fields.html#oneofs-mutually-exclusive-fields
DashboardQuery
DashboardQuery resource.
Input
Input to the query like time window.
This message has oneof_ fields (mutually exclusive fields).
For each oneof, at most one member field can be set at the same time.
Setting any member of the oneof automatically clears all other
members.
.. _oneof: https://proto-plus-python.readthedocs.io/en/stable/fields.html#oneofs-mutually-exclusive-fields
RelativeTime
time representation for last x units.
DashboardType
Type of the dashboard.
DashboardUserData
User Data for Native Dashboard
DataAccessLabel
A DataAccessLabel is a label on events to define user access to data.
.. _oneof: https://proto-plus-python.readthedocs.io/en/stable/fields.html#oneofs-mutually-exclusive-fields
DataAccessLabelReference
Reference object to a data access label.
This message has oneof_ fields (mutually exclusive fields).
For each oneof, at most one member field can be set at the same time.
Setting any member of the oneof automatically clears all other
members.
.. _oneof: https://proto-plus-python.readthedocs.io/en/stable/fields.html#oneofs-mutually-exclusive-fields
DataAccessScope
A DataAccessScope is a boolean expression of data access labels used to restrict access to data for users.
DataSource
LINT.IfChange(data_sources)
DataSourceExportSettings
The export settings for a data source.
DataTable
DataTable represents the data table resource.
DataTableColumnInfo
DataTableColumnInfo represents the column metadata of the datatable. The column_index represents the ordering of the values in DataTableRow.
This message has oneof_ fields (mutually exclusive fields).
For each oneof, at most one member field can be set at the same time.
Setting any member of the oneof automatically clears all other
members.
.. _oneof: https://proto-plus-python.readthedocs.io/en/stable/fields.html#oneofs-mutually-exclusive-fields
DataTableColumnType
DataTableColumnType denotes the type of the column to be referenced in the rule.
DataTableOperationErrors
The message containing the errors for a data table operation.
DataTableRow
DataTableRow represents a single row in a data table.
DataTableScopeInfo
DataTableScopeInfo specifies the scope info of the data table.
DataTableUpdateSource
DataTableUpdateSource denotes the source that updated the data table.
DeleteDataAccessLabelRequest
Request message to delete a data access label.
DeleteDataAccessScopeRequest
Request message to delete a data access scope.
DeleteDataTableRequest
Request message for deleting data tables.
DeleteDataTableRowRequest
Request to delete data table row.
DeleteFeedRequest
Request message to delete a feed.
DeleteNativeDashboardRequest
Request message to delete a dashboard.
DeleteRuleRequest
Request message for the DeleteRule method.
DeleteWatchlistRequest
Request message for deleting watchlist.
DetectionExclusionActivity
The activity for a findings refinement that is a detection exclusion. The activity is broken down per detector.
DetectionExclusionDetectorActivity
The activity for a findings refinement that is a detection exclusion broken down for one specific detector.
This message has oneof_ fields (mutually exclusive fields).
For each oneof, at most one member field can be set at the same time.
Setting any member of the oneof automatically clears all other
members.
.. _oneof: https://proto-plus-python.readthedocs.io/en/stable/fields.html#oneofs-mutually-exclusive-fields
DetectionExclusionApplication
Describes the detectors a detection exclusion is applied to.
DisableFeedRequest
DisableFeed request message.
DummyLogTypeSettings
Settings required by Feeds of DummyLogType(used for testing purposes).
DuoAuthSettings
Duo Authentication settings.
DuoUserContextSettings
Duo User Context settings.
DuplicateChartRequest
Request message to duplicate chart in a dashboard.
DuplicateChartResponse
Response message for duplicating chart in a dashboard.
DuplicateNativeDashboardRequest
Request message to duplicate a dashboard.
EditChartRequest
Request message to edit chart in a dashboard.
EditChartResponse
Response message for editing chart in a dashboard.
EnableFeedRequest
EnableFeed request message.
ExecuteDashboardQueryRequest
Request message to execute a dashboard query.
ExecuteDashboardQueryResponse
Response message for executing a dashboard query.
ColumnData
ColumnType
Singular vs list of values in a column.
This message has oneof_ fields (mutually exclusive fields).
For each oneof, at most one member field can be set at the same time.
Setting any member of the oneof automatically clears all other
members.
.. _oneof: https://proto-plus-python.readthedocs.io/en/stable/fields.html#oneofs-mutually-exclusive-fields
List
Store list of values in a column.
ColumnValue
LINT.IfChange(stats_data) Value of the column based on data type.
This message has oneof_ fields (mutually exclusive fields).
For each oneof, at most one member field can be set at the same time.
Setting any member of the oneof automatically clears all other
members.
.. _oneof: https://proto-plus-python.readthedocs.io/en/stable/fields.html#oneofs-mutually-exclusive-fields
ValueMetadata
ExportNativeDashboardsRequest
Request message to export list of dashboard.
ExportNativeDashboardsResponse
Response message for exporting a dashboard.
.. _oneof: https://proto-plus-python.readthedocs.io/en/stable/fields.html#oneofs-mutually-exclusive-fields
FeaturedContentMetadata
FeaturedContentMetadata holds metadata about the Featured Content.
.. _oneof: https://proto-plus-python.readthedocs.io/en/stable/fields.html#oneofs-mutually-exclusive-fields
ContentSourceType
ContentSourceType specifying the content source of origin
FeaturedContentNativeDashboard
FeaturedContentNativeDashboard resource.
Feed
Feed is a resource that contains feed information needed to create a feed.
State
List of states a feed can have.
FeedDetails
Additional details of the feed, these details are dynamic and will be different for each of the feeds.
This message has oneof_ fields (mutually exclusive fields).
For each oneof, at most one member field can be set at the same time.
Setting any member of the oneof automatically clears all other
members.
.. _oneof: https://proto-plus-python.readthedocs.io/en/stable/fields.html#oneofs-mutually-exclusive-fields
FeedSourceType
Different types of feed sources.
LabelsEntry
The abstract base class for a message.
STSMigrationReadiness
Whether the feed is ready for STS migration.
FeedFailureDetails
FeedFailureDetails contains details about the errors thrown by chronicle for the feeds. These are user visible details. These details help user identify the root cause and take appropriate action for the feed errors.
FeedPack
FeedPack is a logical container for related LogTypes for which feeds can be configured.
PackType
Type of feed pack. Feeds Page currently only lists PRODUCT_BASED packs.
FeedServiceAccount
FeedServiceAccount is a resource that wraps the feed service account's name.
FeedSourceTypeSchema
Metadata that pertains to feed source types (see Feed.FeedDetails.FeedSourceType) that is useful for building interfaces to construct valid Feed messages.
FetchServiceAccountForCustomerRequest
Request message for FetchServiceAccountForCustomer.
FilterOperator
FilterOperatorAndValues
FindingsRefinement
Represents a set of logic conditions used to refine various types of findings such as curated rule detections.
FindingsRefinementActivity
The activity for a specific findings refinement.
.. _oneof: https://proto-plus-python.readthedocs.io/en/stable/fields.html#oneofs-mutually-exclusive-fields
FindingsRefinementDeployment
The FindingsRefinementDeployment resource represents the deployment state of a findings refinement.
.. _oneof: https://proto-plus-python.readthedocs.io/en/stable/fields.html#oneofs-mutually-exclusive-fields
FindingsRefinementType
The type of findings refinement, which determines what the findings refinement runs over and the mechanism by which it runs.
FoxITStixSettings
Fox-IT STIX settings.
GenerateSecretRequest
GenerateSecret request message.
GenerateSecretResponse
GenerateSecret response message.
GetBigQueryExportRequest
The request message to fetch BigQuery Export configuration.
GetDashboardChartRequest
Request message to get a dashboard chart.
GetDashboardQueryRequest
Request message to get a dashboard query.
GetDataAccessLabelRequest
Request message to retrieve a data access label.
GetDataAccessScopeRequest
Request message to retrieve a data access scope.
GetDataTableOperationErrorsRequest
The request message for GetDataTableOperationErrors.
GetDataTableRequest
A request to get details about a data table.
GetDataTableRowRequest
Request to get data table row.
GetFeaturedContentNativeDashboardRequest
Request message to get a FeaturedContentNativeDashboard.
GetFeedPackRequest
Request message for GetFeedPack.
GetFeedRequest
Request message to retrieve a feed.
GetFindingsRefinementDeploymentRequest
Request message for GetFindingsRefinementDeployment method.
GetFindingsRefinementRequest
Request message for GetFindingsRefinement method.
GetInstanceRequest
Request to get a Instance.
GetNativeDashboardRequest
Request message to get a dashboard.
GetReferenceListRequest
A request to get details about a reference list.
GetRetrohuntRequest
Request message for GetRetrohunt method.
GetRuleDeploymentRequest
Request message for GetRuleDeployment.
GetRuleRequest
Request message for GetRule method.
GetWatchlistRequest
Request message for getting a watchlist.
GoogleCloudIdentityDeviceUsersSettings
Google Cloud Identity Device Users settings.
GoogleCloudIdentityDevicesSettings
Google Cloud Identity Devices settings.
GoogleCloudStorageEventDrivenSettings
GoogleCloudStorageEventDrivenSettings is the settings proto for Omniflow Google Cloud Storage feeds driven by pubsub events.
GoogleCloudStorageSettings
Google Cloud Storage settings.
GoogleCloudStorageV2Settings
GoogleCloudStorageV2Settings is the settings proto for Omniflow Google Cloud Storage feeds.
HeaderKeyValue
Header key-value pairs.
HttpHeaderAuth
HTTP header based authentication.
HttpSettings
HTTP settings.
HttpsPushAmazonKinesisFirehoseSettings
Settings required by Amazon Kinesis Firehose Feeds(HTTPS-Push V2).
HttpsPushGoogleCloudPubSubSettings
Settings required by Google Cloud Platform Pub/Sub Feeds(HTTPS-Push V2).
HttpsPushWebhookSettings
Settings required by Webhook Feeds(HTTPS-Push V2).
ImpervaWAFSettings
Imperva WAF settings.
ImportExportStatus
ImportExportStatus is a wrapper for dashboard name and status.
ImportNativeDashboardsInlineSource
Inline source for importing dashboards.
ImportNativeDashboardsRequest
Request message to import dashboards.
ImportNativeDashboardsResponse
Response message for importing dashboards.
ImportPushLogsRequest
ImportPushLogsRequest request message.
InAppLink
In app linking start
IngestionLabel
Representation of an ingestion label type.
InlineDestination
InlineDestination for exporting a dashboard.
InputsUsed
InputsUsed is a convenience field that tells us which sources of events (if any) were used in the rule. NEXT TAG: 4
InstallFeaturedContentNativeDashboardRequest
Request message to install a FeaturedContentNativeDashboard.
InstallFeaturedContentNativeDashboardResponse
Response message for installing a FeaturedContentNativeDashboard.
Instance
A Instance represents an instantiation of the Instance product.
LanguageFeature
A language feature describes a specific capability or syntax of the
query language used in a dashboard query, such as JOINS,
STAGES, or DATA_TABLES.
LatestExportJobState
The state of the latest data source export job.
LegendAlign
LegendOrient
ListAllFindingsRefinementDeploymentsRequest
Request message for ListAllFindingsRefinementDeployments method.
ListAllFindingsRefinementDeploymentsResponse
Response message for ListAllFindingsRefinementDeployments method.
ListDataAccessLabelsRequest
Request message for ListDataAccessLabels.
ListDataAccessLabelsResponse
Response message for ListDataAccessLabels.
ListDataAccessScopesRequest
Request message for ListDataAccessScopes.
ListDataAccessScopesResponse
Response message for ListDataAccessScopes.
.. _oneof: https://proto-plus-python.readthedocs.io/en/stable/fields.html#oneofs-mutually-exclusive-fields
ListDataTableRowsRequest
Request to list data table rows.
ListDataTableRowsResponse
Response message for listing data table rows.
ListDataTablesRequest
A request for a list of data tables.
ListDataTablesResponse
Response message for listing data tables.
ListFeaturedContentNativeDashboardsRequest
Request message to list FeaturedContentNativeDashboards.
ListFeaturedContentNativeDashboardsResponse
Response message for listing FeaturedContentNativeDashboards.
ListFeedPacksRequest
Request message for ListFeedPacks.
ListFeedPacksResponse
Response message for ListFeedPacks.
ListFeedSourceTypeSchemasRequest
ListFeedSourceTypeSchemas request message. Note that Feed schemas do not contain customer data, so are not scoped to a particular customer.
ListFeedSourceTypeSchemasResponse
ListFeedSourceTypeSchemas response message.
ListFeedsRequest
Request message for ListFeed.
ListFeedsResponse
Response message for ListFeed.
ListFindingsRefinementsRequest
Request message for ListFindingsRefinements method.
ListFindingsRefinementsResponse
Response message for ListFindingsRefinements method.
ListLogTypeSchemasRequest
ListLogTypeSchemas request message. Note that feed schemas do not contain customer data, so are not scoped to a particular customer.
ListLogTypeSchemasResponse
ListLogTypeSchemas response message.
ListNativeDashboardsRequest
Request message to list dashboards.
ListNativeDashboardsResponse
Response message for listing dashboards.
ListReferenceListsRequest
A request for a list of reference lists.
ListReferenceListsResponse
A response to a request for a list of reference lists.
ListRetrohuntsRequest
Request message for ListRetrohunts method.
ListRetrohuntsResponse
Response message for ListRetrohunts method.
ListRuleDeploymentsRequest
Request message for ListRuleDeployments.
ListRuleDeploymentsResponse
Response message for ListRuleDeployments.
ListRuleExecutionErrorsRequest
Request message for ListRuleExecutionErrors.
ListRuleExecutionErrorsResponse
Response message for ListRuleExecutionErrors.
ListRuleRevisionsRequest
Request message for ListRuleRevisions method.
ListRuleRevisionsResponse
Response message for ListRuleRevisions method.
ListRulesRequest
Request message for ListRules method.
ListRulesResponse
Response message for ListRules method.
ListWatchlistsRequest
Request message for listing watchlists.
ListWatchlistsResponse
Response message for listing watchlists.
LogTypeSchema
Metadata that pertains to a log type in the context of Feeds, and is useful for building interfaces to construct valid Feed messages.
DetailsFieldSchema
A schema for a particular details field on the Feed proto
message.
DetailsFieldSchemaAlternative
A collection of details field schema sets. The user must provide
values for only one set of fields within an alternative.
DetailsFieldSchemaSet
A collection of schemas for related fields within details.
EnumFieldSchema
A schema for a particular value, for a particular enum details
field on the Feed proto message.
MandiantIoCSettings
Mandiant IOC settings.
Markdown
Markdown config for a dashboard tile.
MarkdownProperties
Properties for the markdown.
MetricDisplayTrend
Trend to be displayed for the metric charts as.
MetricFormat
Metric format to be displayed for the metric charts.
MetricTrendType
Trend to be displayed for the metric charts as.
MicrosoftGraphAlertSettings
Microsoft Graph Alert settings.
MicrosoftOAuthClientCredentials
Microsoft OAuth 2.0 client credentials grant.
MicrosoftSecurityCenterAlertSettings
Microsoft Security Center alert settings.
MimecastMailSettings
Mimecast Mail settings.
MimecastMailV2Settings
Mimecast Mail V2 Settings.
MimecastV2OAuthClientCredentials
OAuth 2.0 client credentials grant. See https://tools.ietf.org/html/rfc6749.
MssoAuthentication
Info for MssoAuthentication using a username, password, and login api endpoint.
NativeDashboard
NativeDashboard resource.
NativeDashboardView
NativeDashboardView indicates the scope of fields to populate when returning the dashboard resource.
NativeDashboardWithChartsAndQueries
NativeDashboardWithChartsAndQueries for exporting a dashboard.
NetskopeAlertSettings
Netskope Alert settings.
NetskopeAlertV2Settings
Netskope Alert V2 settings.
OAuthClientCredentials
OAuth 2.0 client credentials grant. See https://tools.ietf.org/html/rfc6749.
OAuthJWTCredentials
OAuth 2.0 JWT grant. See, https://tools.ietf.org/html/rfc7519
.. _oneof: https://proto-plus-python.readthedocs.io/en/stable/fields.html#oneofs-mutually-exclusive-fields
OAuthPasswordGrantCredentials
OAuth 2.0 password grant. See https://tools.ietf.org/html/rfc6749.
OAuthRefreshToken
OAuth 2.0 refresh token grant. See https://tools.ietf.org/html/rfc6749.
Office365Settings
Office 365 settings.
ContentType
Office 365 supported content types:
OktaSettings
Okta settings.
OktaUserContextSettings
Okta user context settings.
OutcomeFilter
Outcome filter for the findings refinement. This is used to filter the findings refinement based on the outcome variable values.
Operator
The operator to compare the outcome variable value with the outcome value in the outcome filter.
PackLogType
PackLogtype is a log type featured in the feed pack.
PanIocSettings
PAN IOC settings.
PanPrismaAuth
PAN Prisma Cloud auth.
PanPrismaCloudSettings
PAN Prisma Cloud settings.
PlotMode
Plot mode for the map.
PointSizeType
Point size type for the map.
ProofpointMailSettings
Proofpoint Mail settings.
ProofpointOnDemandSettings
Proofpoint On-demand settings.
ProvisionBigQueryExportRequest
The request message to provision BigQuery Export configuration.
PubsubSettings
Settings required by Google Cloud Pub/Sub Feeds(HTTP-Push).
QualysScanSettings
Qualys Scan settings.
ApiType
API Type
QualysVMSettings
Qualys VM settings.
QueryRuntimeError
Runtime error for a dashboard query.
ErrorSeverity
Based on ErrorSeverity, UI will choose to format the error differently.
MetadataKey
Metadata enum to identify the metadata key.
QueryRuntimeErrorMetadata
Metadata for the error.
WarningReason
Warning reason.
RHIsacIocSettings
RH-ISAC settings.
RSCredentials
RS credentials.
Rapid7InsightSettings
Rapid7 Insight settings.
RecordedFutureIocSettings
Recorded Future IOC settings.
ReferenceList
A reference list. Reference lists are user-defined lists of values which users can use in multiple Rules.
ReferenceListEntry
An entry in a reference list.
ReferenceListError
The error generated when verifying the reference list.
ReferenceListScope
ReferenceListScope specifies the list of scope names of the reference list.
ReferenceListSyntaxType
The syntax type indicating how list entries should be validated.
ReferenceListView
ReferenceListView is a mechanism for viewing partial responses of the ReferenceList resource.
RemoveChartRequest
Request message to remove chart from a dashboard.
RenderType
Render type of the data in the chart.
Retrohunt
Retrohunt is an execution of a Rule over a time range in the past.
State
The possible states a retrohunt can be in.
RetrohuntMetadata
Operation Metadata for Retrohunts.
Rule
The Rule resource represents a user-created rule. NEXT TAG: 21
CompilationState
The current compilation state of the rule.
MetadataEntry
The abstract base class for a message.
RuleDeployment
The RuleDeployment resource represents the deployment state of a Rule.
ExecutionState
The possible execution states the rule deployment can be in.
RuleExecutionError
The RuleExecutionError resource represents an error generated from running/deploying a rule.
This message has oneof_ fields (mutually exclusive fields).
For each oneof, at most one member field can be set at the same time.
Setting any member of the oneof automatically clears all other
members.
.. _oneof: https://proto-plus-python.readthedocs.io/en/stable/fields.html#oneofs-mutually-exclusive-fields
RuleType
RuleType indicates the YARA-L rule type of user-created and Google Cloud Threat Intelligence (GCTI) authored rules.
RuleView
RuleView indicates the scope of fields to populate when returning the Rule resource.
RunFrequency
RunFrequency indicates the run frequency at which a YARA-L 2 rule will run if enabled.
S3Auth
Amazon S3 auth.
S3AuthV2
A message containing fields used to authenticate with Amazon S3.
This message has oneof_ fields (mutually exclusive fields).
For each oneof, at most one member field can be set at the same time.
Setting any member of the oneof automatically clears all other
members.
.. _oneof: https://proto-plus-python.readthedocs.io/en/stable/fields.html#oneofs-mutually-exclusive-fields
S3Region
AWS S3 regions: https://docs.aws.amazon.com/general/latest/gr/rande.html#s3_region.
S3V2AccessKeySecretAuth
S3 V2 access key and secret auth.
S3V2AwsIamRoleAuth
AWS IAM Role Auth for S3 V2.
SQSAccessKeySecretAuth
Amazon SQS access key and secret auth.
SQSAuth
Amazon SQS auth.
SQSAuthV2
A message containing fields used to authenticate with Amazon SQS.
This message has oneof_ fields (mutually exclusive fields).
For each oneof, at most one member field can be set at the same time.
Setting any member of the oneof automatically clears all other
members.
.. _oneof: https://proto-plus-python.readthedocs.io/en/stable/fields.html#oneofs-mutually-exclusive-fields
SQSV2AccessKeySecretAuth
SQS V2 access key and secret auth.
SQSV2AwsIamRoleAuth
AWS IAM Role Auth for SQS V2.
SSLClientKeypair
An SSL client certificate keypair.
SalesforceSettings
Salesforce settings.
This message has oneof_ fields (mutually exclusive fields).
For each oneof, at most one member field can be set at the same time.
Setting any member of the oneof automatically clears all other
members.
.. _oneof: https://proto-plus-python.readthedocs.io/en/stable/fields.html#oneofs-mutually-exclusive-fields
ScopeInfo
ScopeInfo specifies the scope info of the reference list.
SemanticType
An enumeration of the possible types of a Feed.details field,
where type implies both encoding and semantics. This is used in
constructing a schema in order to construct a UI for creating well
formed feeds.
SentineloneAlertSettings
SentinelOne Alert settings.
SeriesStackStrategy
SeriesType
ServiceNowCMDBSettings
ServiceNow CMDB settings.
Severity
Severity represents the severity level of the rule.
SftpAuth
SFTP Auth.
SftpSettings
SFTP settings.
SourceDeletionOption
Source deletion option controls whether source files should be deleted after transferring.
SourceDeletionOptionV2
Source deletion option determines whether source files should be deleted after transferring.
SymantecEventExportSettings
Symantec Event Export settings.
ThinkstCanarySettings
Thinkst Canary settings.
ThreatConnectIoCSettings
ThreatConnect IOC Settings.
ThreatConnectIoCV3Settings
TileType
TileType indicates what type of chart tile it is i.e., visualization chart, button or text.
TimeUnit
TimeUnit supported for PAST filter operator.
TimestampMetadata
Metadata of the timestamp column.
ToolTipTrigger
TrellixHxAlertsSettings
Settings required by Feeds of TrellixHxAlerts.
TrellixHxBulkAcqsSettings
Settings required by Feeds of TrellixHxBulkAcqs.
TrellixHxHostsSettings
Settings required by Feeds of TrellixHxHosts.
TrellixIAMAuthentication
Settings for TrellixIAMAuthentication.
TrellixLocalAuthentication
Info for TrellixLocalAuthentication using a username, password, endpoint, and header name.
TrellixStarXAuthentication
TrellixStarXAuthentication contains a oneof with all of the authentication types supported by Trellix *X devices.
This message has oneof_ fields (mutually exclusive fields).
For each oneof, at most one member field can be set at the same time.
Setting any member of the oneof automatically clears all other
members.
.. _oneof: https://proto-plus-python.readthedocs.io/en/stable/fields.html#oneofs-mutually-exclusive-fields
URISourceType
The type of URIs specified in the source URIs.
UpdateBigQueryExportRequest
The request message to update BigQuery Export configuration.
UpdateDataAccessLabelRequest
Request message for UpdateDataAccessLabel method.
UpdateDataAccessScopeRequest
Request message for UpdateDataAccessScope method.
UpdateDataTableRequest
A request to update details of data table.
UpdateDataTableRowRequest
Request to update data table row.
UpdateFeedRequest
Request message for UpdateFeed.
UpdateFindingsRefinementDeploymentRequest
Request message for UpdateFindingsRefinementDeployment method.
UpdateFindingsRefinementRequest
Request message for UpdateFindingsRefinement method.
UpdateNativeDashboardRequest
Request message to update a dashboard.
UpdateReferenceListRequest
A request to update a reference list.
UpdateRuleDeploymentRequest
Request message for UpdateRuleDeployment.
UpdateRuleRequest
Request message for UpdateRule method.
UpdateWatchlistRequest
Request message for updating watchlist.
UsernameSecretAuth
Info for username and secret based authentication.
VerifyReferenceListRequest
VerifyReferenceList request message.
VerifyReferenceListResponse
VerifyListResponse response message.
VerifyRuleTextRequest
Request message for VerifyRuleText method.
VerifyRuleTextResponse
Response message for VerifyRuleText method.
VisualMapType
Visual map for various charts. More info:
Watchlist
A watchlist is a list of entities that allows for bulk operations over the included entities.
EntityCount
Count of different types of entities in the watchlist.
EntityPopulationMechanism
Mechanism to populate entities in the watchlist.
.. _oneof: https://proto-plus-python.readthedocs.io/en/stable/fields.html#oneofs-mutually-exclusive-fields
Manual
Entities are added manually.
WatchlistUserPreferences
A collection of user preferences for watchlist UI configuration.
WebhookSettings
Settings required by Webhook Feeds(HTTP-Push).
WorkdayAuth
Authentication for Workday.
WorkdaySettings
Workday settings.
WorkspaceActivitySettings
Workspace Activity settings.
WorkspaceAlertsSettings
Workspace Alert settings.
WorkspaceChromeOSSettings
Workspace Chrome OS settings.
WorkspaceGroupsSettings
Workspace Groups settings.
WorkspaceMobileSettings
Workspace Mobile settings.
WorkspacePrivilegesSettings
Workspace Privileges settings.
WorkspaceUsersSettings
Workspace Users settings.
ProjectionType
Projection Type.
Modules
pagers
API documentation for chronicle_v1.services.data_access_control_service.pagers module.
pagers
API documentation for chronicle_v1.services.data_table_service.pagers module.
pagers
API documentation for chronicle_v1.services.entity_service.pagers module.
pagers
API documentation for chronicle_v1.services.featured_content_native_dashboard_service.pagers module.
pagers
API documentation for chronicle_v1.services.feeds_service.pagers module.
pagers
API documentation for chronicle_v1.services.findings_refinement_service.pagers module.
pagers
API documentation for chronicle_v1.services.native_dashboard_service.pagers module.
pagers
API documentation for chronicle_v1.services.reference_list_service.pagers module.
pagers
API documentation for chronicle_v1.services.rule_execution_error_service.pagers module.
pagers
API documentation for chronicle_v1.services.rule_service.pagers module.