SecurityinsightsFunctions

Functions

Link copied to clipboard

Represents AAD (Azure Active Directory) data connector. API Version: 2020-01-01.

suspend fun getAADDataConnector(dataConnectorId: String, resourceGroupName: String, workspaceName: String): GetAADDataConnectorResult
Link copied to clipboard

Represents AATP (Azure Advanced Threat Protection) data connector. API Version: 2020-01-01.

suspend fun getAATPDataConnector(dataConnectorId: String, resourceGroupName: String, workspaceName: String): GetAATPDataConnectorResult
Link copied to clipboard

Action for alert rule. API Version: 2020-01-01.

suspend fun getAction(argument: suspend GetActionPlainArgsBuilder.() -> Unit): GetActionResult
suspend fun getAction(actionId: String, resourceGroupName: String, ruleId: String, workspaceName: String): GetActionResult
Link copied to clipboard

Represents Activity entity query. API Version: 2021-03-01-preview.

suspend fun getActivityCustomEntityQuery(entityQueryId: String, operationalInsightsResourceProvider: String, resourceGroupName: String, workspaceName: String): GetActivityCustomEntityQueryResult
Link copied to clipboard

Alert rule. API Version: 2020-01-01.

suspend fun getAlertRule(resourceGroupName: String, ruleId: String, workspaceName: String): GetAlertRuleResult
Link copied to clipboard

Settings with single toggle. API Version: 2021-03-01-preview.

suspend fun getAnomalies(operationalInsightsResourceProvider: String, resourceGroupName: String, settingsName: String, workspaceName: String): GetAnomaliesResult
Link copied to clipboard

Represents ASC (Azure Security Center) data connector. API Version: 2020-01-01.

suspend fun getASCDataConnector(dataConnectorId: String, resourceGroupName: String, workspaceName: String): GetASCDataConnectorResult
Link copied to clipboard

Represents an automation rule. API Version: 2019-01-01-preview.

suspend fun getAutomationRule(automationRuleId: String, operationalInsightsResourceProvider: String, resourceGroupName: String, workspaceName: String): GetAutomationRuleResult
Link copied to clipboard

Represents Amazon Web Services CloudTrail data connector. API Version: 2020-01-01.

suspend fun getAwsCloudTrailDataConnector(dataConnectorId: String, resourceGroupName: String, workspaceName: String): GetAwsCloudTrailDataConnectorResult
Link copied to clipboard

Represents a bookmark in Azure Security Insights. API Version: 2020-01-01.

suspend fun getBookmark(argument: suspend GetBookmarkPlainArgsBuilder.() -> Unit): GetBookmarkResult
suspend fun getBookmark(bookmarkId: String, resourceGroupName: String, workspaceName: String): GetBookmarkResult
Link copied to clipboard

Represents a relation between two resources API Version: 2019-01-01-preview.

suspend fun getBookmarkRelation(bookmarkId: String, operationalInsightsResourceProvider: String, relationName: String, resourceGroupName: String, workspaceName: String): GetBookmarkRelationResult
Link copied to clipboard

Data connector. API Version: 2020-01-01.

suspend fun getDataConnector(dataConnectorId: String, resourceGroupName: String, workspaceName: String): GetDataConnectorResult
Link copied to clipboard

The entity timeline result operation response. API Version: 2019-01-01-preview.

suspend fun getEntitiesGetTimeline(endTime: String, entityId: String, kinds: List<Either<String, EntityTimelineKind>>? = null, numberOfBucket: Int? = null, operationalInsightsResourceProvider: String, resourceGroupName: String, startTime: String, workspaceName: String): GetEntitiesGetTimelineResult
Link copied to clipboard

Settings with single toggle. API Version: 2021-03-01-preview.

suspend fun getEntityAnalytics(operationalInsightsResourceProvider: String, resourceGroupName: String, settingsName: String, workspaceName: String): GetEntityAnalyticsResult
Link copied to clipboard

The Get Insights result operation response. API Version: 2019-01-01-preview.

suspend fun getEntityInsights(addDefaultExtendedTimeRange: Boolean? = null, endTime: String, entityId: String, insightQueryIds: List<String>? = null, operationalInsightsResourceProvider: String, resourceGroupName: String, startTime: String, workspaceName: String): GetEntityInsightsResult
Link copied to clipboard

Specific entity query. API Version: 2021-03-01-preview.

suspend fun getEntityQuery(entityQueryId: String, operationalInsightsResourceProvider: String, resourceGroupName: String, workspaceName: String): GetEntityQueryResult
Link copied to clipboard

Settings with single toggle. API Version: 2021-03-01-preview.

suspend fun getEyesOn(argument: suspend GetEyesOnPlainArgsBuilder.() -> Unit): GetEyesOnResult
suspend fun getEyesOn(operationalInsightsResourceProvider: String, resourceGroupName: String, settingsName: String, workspaceName: String): GetEyesOnResult
Link copied to clipboard

Represents Fusion alert rule. API Version: 2020-01-01.

suspend fun getFusionAlertRule(resourceGroupName: String, ruleId: String, workspaceName: String): GetFusionAlertRuleResult
Link copied to clipboard

Represents an incident in Azure Security Insights. API Version: 2020-01-01.

suspend fun getIncident(argument: suspend GetIncidentPlainArgsBuilder.() -> Unit): GetIncidentResult
suspend fun getIncident(incidentId: String, resourceGroupName: String, workspaceName: String): GetIncidentResult
Link copied to clipboard

Represents an incident comment API Version: 2021-03-01-preview.

suspend fun getIncidentComment(incidentCommentId: String, incidentId: String, operationalInsightsResourceProvider: String, resourceGroupName: String, workspaceName: String): GetIncidentCommentResult
Link copied to clipboard

Represents a relation between two resources API Version: 2021-03-01-preview.

suspend fun getIncidentRelation(incidentId: String, operationalInsightsResourceProvider: String, relationName: String, resourceGroupName: String, workspaceName: String): GetIncidentRelationResult
Link copied to clipboard

Represents MCAS (Microsoft Cloud App Security) data connector. API Version: 2020-01-01.

suspend fun getMCASDataConnector(dataConnectorId: String, resourceGroupName: String, workspaceName: String): GetMCASDataConnectorResult
Link copied to clipboard

Represents MDATP (Microsoft Defender Advanced Threat Protection) data connector. API Version: 2020-01-01.

suspend fun getMDATPDataConnector(dataConnectorId: String, resourceGroupName: String, workspaceName: String): GetMDATPDataConnectorResult
Link copied to clipboard

Metadata resource definition. API Version: 2021-03-01-preview.

suspend fun getMetadata(argument: suspend GetMetadataPlainArgsBuilder.() -> Unit): GetMetadataResult
suspend fun getMetadata(metadataName: String, operationalInsightsResourceProvider: String, resourceGroupName: String, workspaceName: String): GetMetadataResult
Link copied to clipboard

Represents office data connector. API Version: 2020-01-01.

suspend fun getOfficeDataConnector(dataConnectorId: String, resourceGroupName: String, workspaceName: String): GetOfficeDataConnectorResult
Link copied to clipboard

The Setting. API Version: 2021-03-01-preview.

suspend fun getProductSetting(operationalInsightsResourceProvider: String, resourceGroupName: String, settingsName: String, workspaceName: String): GetProductSettingResult
Link copied to clipboard

Represents scheduled alert rule. API Version: 2020-01-01.

suspend fun getScheduledAlertRule(resourceGroupName: String, ruleId: String, workspaceName: String): GetScheduledAlertRuleResult
Link copied to clipboard

Security ML Analytics Setting API Version: 2022-05-01-preview.

suspend fun getSecurityMLAnalyticsSetting(resourceGroupName: String, settingsResourceName: String, workspaceName: String): GetSecurityMLAnalyticsSettingResult
Link copied to clipboard

Sentinel onboarding state API Version: 2021-03-01-preview.

suspend fun getSentinelOnboardingState(operationalInsightsResourceProvider: String, resourceGroupName: String, sentinelOnboardingStateName: String, workspaceName: String): GetSentinelOnboardingStateResult
Link copied to clipboard

Represents a SourceControl in Azure Security Insights. API Version: 2021-03-01-preview.

suspend fun getSourceControl(operationalInsightsResourceProvider: String, resourceGroupName: String, sourceControlId: String, workspaceName: String): GetSourceControlResult
Link copied to clipboard

Threat intelligence information object. API Version: 2019-01-01-preview.

suspend fun getThreatIntelligenceIndicator(name: String, operationalInsightsResourceProvider: String, resourceGroupName: String, workspaceName: String): GetThreatIntelligenceIndicatorResult
Link copied to clipboard

Represents threat intelligence data connector. API Version: 2020-01-01.

suspend fun getTIDataConnector(dataConnectorId: String, resourceGroupName: String, workspaceName: String): GetTIDataConnectorResult
Link copied to clipboard
suspend fun getUeba(argument: GetUebaPlainArgs): GetUebaResult

Settings with single toggle. API Version: 2021-03-01-preview.

suspend fun getUeba(argument: suspend GetUebaPlainArgsBuilder.() -> Unit): GetUebaResult
suspend fun getUeba(operationalInsightsResourceProvider: String, resourceGroupName: String, settingsName: String, workspaceName: String): GetUebaResult
Link copied to clipboard

Represents a Watchlist in Azure Security Insights. API Version: 2021-03-01-preview.

suspend fun getWatchlist(operationalInsightsResourceProvider: String, resourceGroupName: String, watchlistAlias: String, workspaceName: String): GetWatchlistResult
Link copied to clipboard

Represents a Watchlist item in Azure Security Insights. API Version: 2021-03-01-preview.

suspend fun getWatchlistItem(operationalInsightsResourceProvider: String, resourceGroupName: String, watchlistAlias: String, watchlistItemId: String, workspaceName: String): GetWatchlistItemResult
Link copied to clipboard

List all the source controls. API Version: 2021-03-01-preview.

suspend fun listSourceControlRepositories(operationalInsightsResourceProvider: String, resourceGroupName: String, workspaceName: String): ListSourceControlRepositoriesResult