Proteggiamo il tuo ambiente digitale da qualsiasi attacco informatico. Sfrutta tutte le potenzialità della piattaforma SGBox!

Gallery

Contatti

Via Melchiorre Gioia, 168 - 20125 Milano

info@sgbox.it

+39 02 60830172

Search another article?

You are here:
< Back

Triggering a Playbook from a Pattern analysis Dashboard

Create a playbook with a trigger node as start node

Playbooks and Dashboards

Edit the trigger to set, in the Test parameters section, the same name of the parameter of the event you want to use in the dashboard to trigger the playbook.
Playbooks and Dashboards

In the following nodes of the flow, use that parameter. In this example, we add a DNS Lookup node that uses the DestinationIP parameter coming from the trigger.

Playbooks and Dashboards

Playbooks and Dashboards

Save the playbook and go to SCM -> Dashboard -> Dashboard. In any Pattern analysis dashboard showing events with the DestinationIP parameter, you can right-click on the value and select Send this value to a playbook

Playbooks and Dashboards

Choose the previously saved playbook to get the DNS Lookup output.

Playbooks and Dashboards

Download the PB samples package for examples.