RSA_GetRawLog
RSA NetWitness Pack.#
This Script is part of theSupported versions
Supported Cortex XSOAR versions: 6.9.0 and later.
Use this script to get RAW log. Each RSA NetWitness log contains the eventsource meta that contains an IP address that can be requested using RSA NetWitness Packets and Logs. This log is after set in the field rsarawlogslist.
#
Script DataName | Description |
---|---|
Script Type | python3 |
Tags | field-change-triggered |
#
DependenciesThis script uses the following commands and scripts.
- netwitness-query
- RSA NetWitness Packets and Logs
- netwitness-packets
#
Used InThis script is used in the following playbooks and scripts.
- rsaalerts
#
InputsThere are no inputs for this script.
#
OutputsThere are no outputs for this script.
#
Script Examples#
Example command!RSA_GetRawLog