-
Notifications
You must be signed in to change notification settings - Fork 4
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
API Issues #3
Comments
Where do you see the query parameter documented for event-search? That hasn't been implemented yet. |
Here https://apidocs.securitycloud.symantec.com/#/doc?id=ses_event_search |
This was accidentally published too early. The "query" field is expected to be available next month. We'll correct the documentation. Thanks for letting us know. |
Thank you very much for the clarification, I look forward to the update |
I've been trying to retrieve specific events using the query parameter with the Event Search API module, however, when I get the response, it seems that the parameter doesn't work. The response shows many events that have no relation to the query made.
I have checked many "Lucene format" expressions but none have worked.
Also as for the insight module, it returns the first time and the last time a file has been seen, however it seems to be the global date on all symantec platforms. ¿Is there no way to see the first and last time a file was seen within my company only?
The text was updated successfully, but these errors were encountered: