Skip to main content

JSON Sample Incident Generator

Supported versions

Supported Cortex XSOAR versions: 6.0.0 and later.

A utility for testing incident fetching with mock JSON data.

Configure JSON Sample Incident Generator on Cortex XSOAR#

  1. Navigate to Settings > Integrations > Servers & Services.

  2. Search for JSONSampleIncidentGenerator.

  3. Click Add instance to create and configure a new integration instance.

    ParameterRequired
    Fetch incidentsFalse
    Incident typeFalse
    Incidents Fetch IntervalFalse
    The raw JSON string to use as the sample dataTrue
    The incident name to give to the created incidentFalse
  4. Click Test to validate the URLs, token, and connection.

Commands#

You can execute these commands from the Cortex XSOAR CLI, as part of an automation, or in a playbook. After you successfully execute a command, a DBot message appears in the War Room with the command details.

json-sample-incident-generator-command#


Read the provided JSON and return the results to the Context and Warroom. Can use key and value arg to change a JSON values if desired.

Base Command#

json-sample-incident-generator-command

Input#

Argument NameDescriptionRequired
keyThe key to change. Must also set value arguement. Can be comma separated to change multiple values.Optional
valueThe new key value. Must also set key argument. Can be comma separated to support changing multiple values.Optional

Context Output#

There is no context output for this command.

Command Example#

!json-sample-incident-generator-command key="somekey" value="somevalue"

Context Example#

{
"JSON": {
"Sample": {
"description": "something bad happened",
"somekey": "somevalue",
"type": "Malware"
}
}
}

Human Readable Output#

Results#

descriptionsomekeytype
something bad happenedsomevalueMalware