Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

API Issues #3

Open
viri4t0 opened this issue Oct 2, 2021 · 4 comments
Open

API Issues #3

viri4t0 opened this issue Oct 2, 2021 · 4 comments

Comments

@viri4t0
Copy link

viri4t0 commented Oct 2, 2021

I've been trying to retrieve specific events using the query parameter with the Event Search API module, however, when I get the response, it seems that the parameter doesn't work. The response shows many events that have no relation to the query made.
I have checked many "Lucene format" expressions but none have worked.

Also as for the insight module, it returns the first time and the last time a file has been seen, however it seems to be the global date on all symantec platforms. ¿Is there no way to see the first and last time a file was seen within my company only?

@adamli9
Copy link
Collaborator

adamli9 commented Oct 4, 2021

Where do you see the query parameter documented for event-search? That hasn't been implemented yet.

@viri4t0
Copy link
Author

viri4t0 commented Oct 4, 2021

Where do you see the query parameter documented for event-search? That hasn't been implemented yet.

Here https://apidocs.securitycloud.symantec.com/#/doc?id=ses_event_search

IMG_20211004_223841.jpg

@adamli9
Copy link
Collaborator

adamli9 commented Oct 5, 2021

This was accidentally published too early. The "query" field is expected to be available next month. We'll correct the documentation. Thanks for letting us know.

@viri4t0
Copy link
Author

viri4t0 commented Oct 5, 2021

Thank you very much for the clarification, I look forward to the update

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants