Skip to main content

Darktrace Email Basic Email Handler

This Playbook is part of the Darktrace Pack.#

Supported versions

Supported Cortex XSOAR versions: 6.10.0 and later.

Runs a common Email workflow for fetch Darktrace Email incidents.

Dependencies#

This playbook uses the following sub-playbooks, integrations, and scripts.

Sub-playbooks#

  • Darktrace Email Update Incident Fields

Integrations#

  • DarktraceEmail

Scripts#

  • IsTrue
  • IsValueInArray

Commands#

  • closeInvestigation
  • darktrace-email-hold-email
  • darktrace-email-release-email

Playbook Inputs#


NameDescriptionDefault ValueRequired
Incident ID${incident.id}Required

Playbook Outputs#


There are no outputs for this playbook.

Playbook Image#


Darktrace Email Basic Email Handler