This url https://github.com/CrowdStrike/falconpy/blob/main/samples/detects/detects_advisor.py #1272
Replies: 2 comments 2 replies
-
And in the query detects only this filter works
the above shows 200+ count while I have to get all detections
no result |
Beta Was this translation helpful? Give feedback.
-
Hi Jshcodes, first thanks for your Immediate reply. With the -u filter I am able to change the status, Also Please share your query_detects whole code for status in-progress, just to read the last months detection sttauses and not to update the status .
the issue is I have to report all detections from last month whether closed or open or in progress. Passive operation |
Beta Was this translation helpful? Give feedback.
-
Here i want to get all detections whose status is closed, open , in-progress any.
where as
python .\detects_advisor.py -k <> -s <>,
gives me only status open results.
Documentation repository:
[ https://github.com/CrowdStrike/falconpy/blob/main/samples/detects/detects_advisor.py] GitHub Wiki
Source code - docstring
Additional context
Add any other context about the problem here.
I want to read detections for last month either open or closed but even this call gives me only open detections. what about the closed ones ?
Beta Was this translation helpful? Give feedback.
All reactions