Package-level declarations
Types
The Activity query definitions
Describes an automation rule action to add a task to an incident.
Settings for how to dynamically override alert static details
Builder for AlertDetailsOverrideArgs.
A single alert property mapping to override
Builder for AlertPropertyMappingArgs.
Alerts data type for data connectors.
Builder for AlertsDataTypeOfDataConnectorArgs.
Model for authentication with the API Key. Will result in additional header on the request (default behavior) to the remote server: 'ApiKeyName: ApiKeyIdentifier ApiKey'. If 'IsApiKeyInPostPayload' is true it will send it in the body of the request and not the header.
Builder for ApiKeyAuthModelArgs.
An entity describing a content item.
Builder for AssignmentItemArgs.
Describes an automation rule action to add a task to an incident
Describes an automation rule condition with boolean operators.
Builder for AutomationRuleBooleanConditionArgs.
Describes an automation rule action to modify an object's properties
Describes an automation rule condition on array properties.
Describes an automation rule action to run a playbook
Describes automation rule triggering logic.
Builder for AutomationRuleTriggeringLogicArgs.
Model for API authentication with AWS.
Builder for AWSAuthModelArgs.
The available data types for Amazon Web Services CloudTrail data connector.
Logs data type.
Resources created in Azure DevOps repository.
Builder for AzureDevOpsResourceInfoArgs.
Model for API authentication with basic flow - user name + password.
Builder for BasicAuthModelArgs.
Describes an automation rule condition that applies a boolean operator (e.g AND, OR) to conditions
Builder for BooleanConditionPropertiesArgs.
A custom response configuration for a rule.
Builder for CcpResponseConfigArgs.
Information on the client (user or application) that made some action
Builder for ClientInfoArgs.
The criteria by which we determine whether the connector is connected or not. For Example, use a KQL query to check if the expected data type is flowing).
Builder for ConnectivityCriterionArgs.
The data type which is created by the connector, including a query indicated when was the last time that data type was received in the workspace.
Builder for ConnectorDataTypeArgs.
The exposure status of the connector to the customers.
The required Permissions for the connector.
The resource provider details include the required permissions for the user to create connections. The user should have the required permissions(Read\Write, ..) in the specified scope ProviderPermissionsScope against the specified resource provider.
The mapping of content type to a repo path.
Builder for ContentPathMapArgs.
The UiConfig for 'Customizable' connector definition kind.
Builder for CustomizableConnectionsConfigArgs.
The UiConfig for 'Customizable' connector definition kind.
Builder for CustomizableConnectorUiConfigArgs.
The Custom permissions required for the connector.
Builder for CustomPermissionDetailsArgs.
Common field for data type in data connectors.
Builder for DataConnectorDataTypeCommonArgs.
The configuration of the destination of the data.
Builder for DCRConfigurationArgs.
Description about a deployment.
Builder for DeploymentArgs.
Information regarding a deployment.
Builder for DeploymentInfoArgs.
Single entity mapping for the alert rule
Builder for EntityMappingArgs.
Event grouping settings property bag.
Builder for EventGroupingSettingsArgs.
A single field mapping of the mapped entity
Builder for FieldMappingArgs.
Represents a file.
Builder for FileMetadataArgs.
Model for API authentication for all GCP kind connectors.
Builder for GCPAuthModelArgs.
Model for API authentication for working with service bus or storage account.
Builder for GenericBlobSbsAuthModelArgs.
Builder for GetAADDataConnectorPlainArgs.
Builder for GetAATPDataConnectorPlainArgs.
Builder for GetActionPlainArgs.
Builder for GetAnomaliesPlainArgs.
Builder for GetASCDataConnectorPlainArgs.
Builder for GetAutomationRulePlainArgs.
Builder for GetBookmarkPlainArgs.
Builder for GetBookmarkRelationPlainArgs.
Builder for GetContentPackagePlainArgs.
Builder for GetContentTemplatePlainArgs.
Builder for GetEntitiesGetTimelinePlainArgs.
Builder for GetEntityAnalyticsPlainArgs.
Builder for GetEntityInsightsPlainArgs.
Builder for GetEyesOnPlainArgs.
Builder for GetFileImportPlainArgs.
Builder for GetFusionAlertRulePlainArgs.
Builder for GetHuntCommentPlainArgs.
Builder for GetHuntPlainArgs.
Builder for GetHuntRelationPlainArgs.
Builder for GetIncidentCommentPlainArgs.
Builder for GetIncidentPlainArgs.
Builder for GetIncidentRelationPlainArgs.
Builder for GetIncidentTaskPlainArgs.
Builder for GetMCASDataConnectorPlainArgs.
Builder for GetMDATPDataConnectorPlainArgs.
Builder for GetMetadataPlainArgs.
Builder for GetMSTIDataConnectorPlainArgs.
Builder for GetOfficeDataConnectorPlainArgs.
Builder for GetScheduledAlertRulePlainArgs.
Builder for GetSourceControlPlainArgs.
Builder for GetSystemPlainArgs.
Builder for GetTIDataConnectorPlainArgs.
Builder for GetUebaPlainArgs.
Builder for GetWatchlistItemPlainArgs.
Builder for GetWatchlistPlainArgs.
Builder for GetWorkspaceManagerGroupPlainArgs.
Builder for GetWorkspaceManagerMemberPlainArgs.
Model for API authentication for GitHub. For this authentication first we need to approve the Router app (Microsoft Security DevOps) to access the GitHub account, Then we only need the InstallationId to get the access token from https://api.github.com/app/installations/{installId}/access_tokens.
Builder for GitHubAuthModelArgs.
Resources created in GitHub repository.
Builder for GitHubResourceInfoArgs.
The graph query to show the volume of data arriving into the workspace over time.
Builder for GraphQueryArgs.
Grouping configuration property bag.
Builder for GroupingConfigurationArgs.
Describes a user that the hunt is assigned to
Builder for HuntOwnerArgs.
Incident Configuration property bag.
Builder for IncidentConfigurationArgs.
Describes related incident information for the bookmark
Builder for IncidentInfoArgs.
Represents an incident label
Builder for IncidentLabelArgs.
Information on the user an incident is assigned to
Builder for IncidentOwnerInfoArgs.
Builder for IncidentPropertiesActionArgs.
Instruction steps to enable the connector.
Builder for InstructionStepArgs.
Instruction step details, to be displayed in the Instructions steps section in the connector's page in Sentinel Portal.
Builder for InstructionStepDetailsArgs.
Model for API authentication with JWT. Simple exchange between user name + password to access token.
Builder for JwtAuthModelArgs.
Builder for ListGeodataByIpPlainArgs.
Builder for ListSystemActionsPlainArgs.
Builder for ListWhoisByDomainPlainArgs.
Describes a log.
Builder for LogArgs.
The available data types for MCAS (Microsoft Cloud App Security) data connector.
Builder for MCASDataConnectorDataTypesArgs.
Publisher or creator of the content item.
Builder for MetadataAuthorArgs.
ies for the solution content item
Builder for MetadataCategoriesArgs.
Dependencies for the content item, what other content items it requires to work. Can describe more complex dependencies using a recursive/nested structure. For a single dependency an id/kind/version can be supplied or operator/criteria for complex dependencies.
Builder for MetadataDependenciesArgs.
The original source of the content item, where it comes from.
Builder for MetadataSourceArgs.
Support information for the content item.
Builder for MetadataSupportArgs.
The available data types for Microsoft Threat Intelligence data connector.
Builder for MSTIDataConnectorDataTypesArgs.
Data type for Microsoft Threat Intelligence data connector.
Model for API authentication with no authentication method - public API.
Builder for NoneAuthModelArgs.
Model for API authentication with OAuth2.
Builder for OAuthModelArgs.
The available data types for office data connector.
Builder for OfficeDataConnectorDataTypesArgs.
Exchange data type connection.
SharePoint data type connection.
Teams data type connection.
Builder for OracleAuthModelArgs.
Builder for PlaybookActionPropertiesArgs.
The available data types for Premium Microsoft Defender for Threat Intelligence data connector.
Data type for Premium Microsoft Defender for Threat Intelligence data connector.
Describes an automation rule condition that evaluates an array property's value change
Describes an automation rule condition that evaluates an array property's value
Describes an automation rule condition that evaluates a property's value change
Describes an automation rule condition that evaluates a property's value
Builder for PropertyConditionPropertiesArgs.
metadata of a repository.
Builder for RepositoryArgs.
Resources created in user's repository for the source-control.
Builder for RepositoryResourceInfoArgs.
Required permissions for the connector resource provider that define in ResourceProviders. For more information about the permissions see
The request configuration.
Builder for RestApiPollerRequestConfigArgs.
The request paging configuration.
Describes the Rfc connector.
Builder for RfcConnectorArgs.
Describes the configuration of a SAP Docker agent.
Builder for SapAgentConfigurationArgs.
Describes the SapControl connector configuration.
Builder for SapControlConnectorArgs.
Describes the SAP configuration.
Builder for SapSystemsConfigurationArgs.
security ml analytics settings data sources
Model for API authentication with session cookie.
Builder for SessionAuthModelArgs.
Describes external reference
Describes threat granular marking model entity
Describes threat kill chain phase entity
Describes parsed pattern entity
Describes threat kill chain phase entity
The available data types for TI (Threat Intelligence) data connector.
Builder for TIDataConnectorDataTypesArgs.
Data type for indicators connection.
User information that made some action
Builder for UserInfoArgs.
User information that made some action
Builder for WatchlistUserInfoArgs.
Detail about the webhook object.
Builder for WebhookArgs.