msticpy.context.azure package
Data provider sub-package.
Submodules
- msticpy.context.azure.azure_data module
- msticpy.context.azure.sentinel_analytics module
SentinelAnalyticsMixinSentinelAnalyticsMixin.check_connected()SentinelAnalyticsMixin.connect()SentinelAnalyticsMixin.create_analytic_rule()SentinelAnalyticsMixin.delete_analytic_rule()SentinelAnalyticsMixin.get_alert_rules()SentinelAnalyticsMixin.get_analytic_rules()SentinelAnalyticsMixin.get_metrics()SentinelAnalyticsMixin.get_network_details()SentinelAnalyticsMixin.get_resource_details()SentinelAnalyticsMixin.get_resources()SentinelAnalyticsMixin.get_sentinel_workspaces()SentinelAnalyticsMixin.get_subscription_info()SentinelAnalyticsMixin.get_subscriptions()SentinelAnalyticsMixin.list_alert_rules()SentinelAnalyticsMixin.list_analytic_rules()SentinelAnalyticsMixin.list_analytic_templates()SentinelAnalyticsMixin.list_sentinel_workspaces()
SentinelHuntingMixinSentinelHuntingMixin.check_connected()SentinelHuntingMixin.connect()SentinelHuntingMixin.get_hunting_queries()SentinelHuntingMixin.get_metrics()SentinelHuntingMixin.get_network_details()SentinelHuntingMixin.get_resource_details()SentinelHuntingMixin.get_resources()SentinelHuntingMixin.get_sentinel_workspaces()SentinelHuntingMixin.get_subscription_info()SentinelHuntingMixin.get_subscriptions()SentinelHuntingMixin.list_hunting_queries()SentinelHuntingMixin.list_saved_queries()SentinelHuntingMixin.list_sentinel_workspaces()
- msticpy.context.azure.sentinel_bookmarks module
SentinelBookmarksMixinSentinelBookmarksMixin.check_connected()SentinelBookmarksMixin.connect()SentinelBookmarksMixin.create_bookmark()SentinelBookmarksMixin.delete_bookmark()SentinelBookmarksMixin.get_bookmarks()SentinelBookmarksMixin.get_metrics()SentinelBookmarksMixin.get_network_details()SentinelBookmarksMixin.get_resource_details()SentinelBookmarksMixin.get_resources()SentinelBookmarksMixin.get_sentinel_workspaces()SentinelBookmarksMixin.get_subscription_info()SentinelBookmarksMixin.get_subscriptions()SentinelBookmarksMixin.list_bookmarks()SentinelBookmarksMixin.list_sentinel_workspaces()
- msticpy.context.azure.sentinel_core module
AzureSentinelMicrosoftSentinelMicrosoftSentinel.add_bookmark_to_incident()MicrosoftSentinel.add_tag()MicrosoftSentinel.add_watchlist_item()MicrosoftSentinel.bulk_create_indicators()MicrosoftSentinel.check_connected()MicrosoftSentinel.check_search_status()MicrosoftSentinel.connect()MicrosoftSentinel.create_analytic_rule()MicrosoftSentinel.create_bookmark()MicrosoftSentinel.create_dynamic_summary()MicrosoftSentinel.create_incident()MicrosoftSentinel.create_indicator()MicrosoftSentinel.create_search()MicrosoftSentinel.create_watchlist()MicrosoftSentinel.default_resource_groupMicrosoftSentinel.default_resource_idMicrosoftSentinel.default_subscription_idMicrosoftSentinel.default_workspace_nameMicrosoftSentinel.default_workspace_settingsMicrosoftSentinel.delete_analytic_rule()MicrosoftSentinel.delete_bookmark()MicrosoftSentinel.delete_dynamic_summary()MicrosoftSentinel.delete_indicator()MicrosoftSentinel.delete_search()MicrosoftSentinel.delete_watchlist()MicrosoftSentinel.delete_watchlist_item()MicrosoftSentinel.df_to_dynamic_summaries()MicrosoftSentinel.df_to_dynamic_summary()MicrosoftSentinel.get_alert_rules()MicrosoftSentinel.get_all_indicators()MicrosoftSentinel.get_analytic_rules()MicrosoftSentinel.get_bookmarks()MicrosoftSentinel.get_dynamic_summary()MicrosoftSentinel.get_entities()MicrosoftSentinel.get_hunting_queries()MicrosoftSentinel.get_incident()MicrosoftSentinel.get_incident_alerts()MicrosoftSentinel.get_incident_bookmarks()MicrosoftSentinel.get_incident_comments()MicrosoftSentinel.get_incidents()MicrosoftSentinel.get_indicator()MicrosoftSentinel.get_metrics()MicrosoftSentinel.get_network_details()MicrosoftSentinel.get_resource_details()MicrosoftSentinel.get_resource_id_from_url()MicrosoftSentinel.get_resources()MicrosoftSentinel.get_sentinel_workspaces()MicrosoftSentinel.get_subscription_info()MicrosoftSentinel.get_subscriptions()MicrosoftSentinel.get_ti_metrics()MicrosoftSentinel.get_workspace_details_from_url()MicrosoftSentinel.get_workspace_id()MicrosoftSentinel.get_workspace_name()MicrosoftSentinel.get_workspace_settings()MicrosoftSentinel.get_workspace_settings_by_name()MicrosoftSentinel.list_alert_rules()MicrosoftSentinel.list_analytic_rules()MicrosoftSentinel.list_analytic_templates()MicrosoftSentinel.list_bookmarks()MicrosoftSentinel.list_data_connectors()MicrosoftSentinel.list_dynamic_summaries()MicrosoftSentinel.list_hunting_queries()MicrosoftSentinel.list_incidents()MicrosoftSentinel.list_saved_queries()MicrosoftSentinel.list_sentinel_workspaces()MicrosoftSentinel.list_watchlist_items()MicrosoftSentinel.list_watchlists()MicrosoftSentinel.new_dynamic_summary()MicrosoftSentinel.post_comment()MicrosoftSentinel.query_indicators()MicrosoftSentinel.set_default_subscription()MicrosoftSentinel.set_default_workspace()MicrosoftSentinel.update_dynamic_summary()MicrosoftSentinel.update_incident()MicrosoftSentinel.update_indicator()
- msticpy.context.azure.sentinel_dynamic_summary module
SentinelDynamicSummaryMixinSentinelDynamicSummaryMixin.check_connected()SentinelDynamicSummaryMixin.connect()SentinelDynamicSummaryMixin.create_dynamic_summary()SentinelDynamicSummaryMixin.delete_dynamic_summary()SentinelDynamicSummaryMixin.df_to_dynamic_summaries()SentinelDynamicSummaryMixin.df_to_dynamic_summary()SentinelDynamicSummaryMixin.get_dynamic_summary()SentinelDynamicSummaryMixin.get_metrics()SentinelDynamicSummaryMixin.get_network_details()SentinelDynamicSummaryMixin.get_resource_details()SentinelDynamicSummaryMixin.get_resources()SentinelDynamicSummaryMixin.get_sentinel_workspaces()SentinelDynamicSummaryMixin.get_subscription_info()SentinelDynamicSummaryMixin.get_subscriptions()SentinelDynamicSummaryMixin.list_dynamic_summaries()SentinelDynamicSummaryMixin.list_sentinel_workspaces()SentinelDynamicSummaryMixin.new_dynamic_summary()SentinelDynamicSummaryMixin.update_dynamic_summary()
SentinelQueryProvider
- msticpy.context.azure.sentinel_dynamic_summary_types module
DynamicSummaryDynamicSummary.add_summary_items()DynamicSummary.append_summary_items()DynamicSummary.df_to_dynamic_summaries()DynamicSummary.df_to_dynamic_summary()DynamicSummary.fieldsDynamicSummary.from_json()DynamicSummary.new_dynamic_summary()DynamicSummary.to_df()DynamicSummary.to_json()DynamicSummary.to_json_api()
DynamicSummaryItemDynamicSummaryItem.event_time_utcDynamicSummaryItem.fieldsDynamicSummaryItem.observable_typeDynamicSummaryItem.observable_valueDynamicSummaryItem.packed_contentDynamicSummaryItem.relation_idDynamicSummaryItem.relation_nameDynamicSummaryItem.search_keyDynamicSummaryItem.summary_item_idDynamicSummaryItem.tacticsDynamicSummaryItem.techniquesDynamicSummaryItem.to_api_dict()
FieldListdf_to_dynamic_summaries()df_to_dynamic_summary()
- msticpy.context.azure.sentinel_incidents module
SentinelIncidentsMixinSentinelIncidentsMixin.add_bookmark_to_incident()SentinelIncidentsMixin.check_connected()SentinelIncidentsMixin.connect()SentinelIncidentsMixin.create_bookmark()SentinelIncidentsMixin.create_incident()SentinelIncidentsMixin.delete_bookmark()SentinelIncidentsMixin.get_bookmarks()SentinelIncidentsMixin.get_entities()SentinelIncidentsMixin.get_incident()SentinelIncidentsMixin.get_incident_alerts()SentinelIncidentsMixin.get_incident_bookmarks()SentinelIncidentsMixin.get_incident_comments()SentinelIncidentsMixin.get_incidents()SentinelIncidentsMixin.get_metrics()SentinelIncidentsMixin.get_network_details()SentinelIncidentsMixin.get_resource_details()SentinelIncidentsMixin.get_resources()SentinelIncidentsMixin.get_sentinel_workspaces()SentinelIncidentsMixin.get_subscription_info()SentinelIncidentsMixin.get_subscriptions()SentinelIncidentsMixin.list_bookmarks()SentinelIncidentsMixin.list_incidents()SentinelIncidentsMixin.list_sentinel_workspaces()SentinelIncidentsMixin.post_comment()SentinelIncidentsMixin.update_incident()
- msticpy.context.azure.sentinel_search module
SentinelSearchlistsMixinSentinelSearchlistsMixin.check_connected()SentinelSearchlistsMixin.check_search_status()SentinelSearchlistsMixin.connect()SentinelSearchlistsMixin.create_search()SentinelSearchlistsMixin.delete_search()SentinelSearchlistsMixin.get_metrics()SentinelSearchlistsMixin.get_network_details()SentinelSearchlistsMixin.get_resource_details()SentinelSearchlistsMixin.get_resources()SentinelSearchlistsMixin.get_sentinel_workspaces()SentinelSearchlistsMixin.get_subscription_info()SentinelSearchlistsMixin.get_subscriptions()SentinelSearchlistsMixin.list_sentinel_workspaces()
- msticpy.context.azure.sentinel_ti module
SentinelTIMixinSentinelTIMixin.add_tag()SentinelTIMixin.bulk_create_indicators()SentinelTIMixin.check_connected()SentinelTIMixin.connect()SentinelTIMixin.create_indicator()SentinelTIMixin.delete_indicator()SentinelTIMixin.get_all_indicators()SentinelTIMixin.get_indicator()SentinelTIMixin.get_metrics()SentinelTIMixin.get_network_details()SentinelTIMixin.get_resource_details()SentinelTIMixin.get_resources()SentinelTIMixin.get_sentinel_workspaces()SentinelTIMixin.get_subscription_info()SentinelTIMixin.get_subscriptions()SentinelTIMixin.get_ti_metrics()SentinelTIMixin.list_sentinel_workspaces()SentinelTIMixin.query_indicators()SentinelTIMixin.update_indicator()
- msticpy.context.azure.sentinel_utils module
SentinelInstanceDetailsSentinelUtilsMixinSentinelUtilsMixin.check_connected()SentinelUtilsMixin.connect()SentinelUtilsMixin.get_metrics()SentinelUtilsMixin.get_network_details()SentinelUtilsMixin.get_resource_details()SentinelUtilsMixin.get_resources()SentinelUtilsMixin.get_sentinel_workspaces()SentinelUtilsMixin.get_subscription_info()SentinelUtilsMixin.get_subscriptions()SentinelUtilsMixin.list_sentinel_workspaces()
build_sentinel_resource_id()extract_sentinel_response()parse_resource_id()validate_resource_id()
- msticpy.context.azure.sentinel_watchlists module
SentinelWatchlistsMixinSentinelWatchlistsMixin.add_watchlist_item()SentinelWatchlistsMixin.check_connected()SentinelWatchlistsMixin.connect()SentinelWatchlistsMixin.create_watchlist()SentinelWatchlistsMixin.delete_watchlist()SentinelWatchlistsMixin.delete_watchlist_item()SentinelWatchlistsMixin.get_metrics()SentinelWatchlistsMixin.get_network_details()SentinelWatchlistsMixin.get_resource_details()SentinelWatchlistsMixin.get_resources()SentinelWatchlistsMixin.get_sentinel_workspaces()SentinelWatchlistsMixin.get_subscription_info()SentinelWatchlistsMixin.get_subscriptions()SentinelWatchlistsMixin.list_sentinel_workspaces()SentinelWatchlistsMixin.list_watchlist_items()SentinelWatchlistsMixin.list_watchlists()
- msticpy.context.azure.sentinel_workspaces module
ParsedUrlComponentsSentinelWorkspacesMixinSentinelWorkspacesMixin.check_connected()SentinelWorkspacesMixin.connect()SentinelWorkspacesMixin.get_metrics()SentinelWorkspacesMixin.get_network_details()SentinelWorkspacesMixin.get_resource_details()SentinelWorkspacesMixin.get_resource_id_from_url()SentinelWorkspacesMixin.get_resources()SentinelWorkspacesMixin.get_sentinel_workspaces()SentinelWorkspacesMixin.get_subscription_info()SentinelWorkspacesMixin.get_subscriptions()SentinelWorkspacesMixin.get_workspace_details_from_url()SentinelWorkspacesMixin.get_workspace_id()SentinelWorkspacesMixin.get_workspace_name()SentinelWorkspacesMixin.get_workspace_settings()SentinelWorkspacesMixin.get_workspace_settings_by_name()SentinelWorkspacesMixin.list_sentinel_workspaces()