UNPKG

@itentialopensource/adapter-sevone

Version:
1,709 lines 39.8 kB
{ "content": [ { "appendConditionMessages": true, "clearConditions": [ { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} } ], "clearExpression": "string", "clearMessage": "string", "description": "string", "flow": { "direction": 1, "filterId": 8, "id": 5, "viewId": 1 }, "folderId": 3, "groupId": 2, "groupIdList": [ 7 ], "id": 8, "isDeviceGroup": false, "isMemberOfAny": false, "lastUpdated": 1, "mailOnce": true, "mailPeriod": 3, "mailTo": "string", "name": "string", "objectSubTypeId": 4, "objectTypeId": 10, "pluginId": 6, "severity": 6, "triggerConditions": [ { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} } ], "triggerExpression": "string", "triggerMessage": "string", "type": "other", "useCustomTraps": true, "useDefaultTraps": false, "useDeviceTraps": false, "userEnabled": 3 }, { "appendConditionMessages": false, "clearConditions": [ { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} } ], "clearExpression": "string", "clearMessage": "string", "description": "string", "flow": { "direction": 8, "filterId": 4, "id": 2, "viewId": 9 }, "folderId": 7, "groupId": 4, "groupIdList": [ 1, 3, 10, 8, 4, 9, 8, 6, 9, 3 ], "id": 7, "isDeviceGroup": false, "isMemberOfAny": false, "lastUpdated": 6, "mailOnce": false, "mailPeriod": 7, "mailTo": "string", "name": "string", "objectSubTypeId": 6, "objectTypeId": 6, "pluginId": 6, "severity": 8, "triggerConditions": [ { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} } ], "triggerExpression": "string", "triggerMessage": "string", "type": "flow", "useCustomTraps": true, "useDefaultTraps": false, "useDeviceTraps": true, "userEnabled": 10 }, { "appendConditionMessages": false, "clearConditions": [ { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} } ], "clearExpression": "string", "clearMessage": "string", "description": "string", "flow": { "direction": 5, "filterId": 10, "id": 1, "viewId": 7 }, "folderId": 7, "groupId": 9, "groupIdList": [ 10, 1 ], "id": 3, "isDeviceGroup": true, "isMemberOfAny": false, "lastUpdated": 5, "mailOnce": true, "mailPeriod": 9, "mailTo": "string", "name": "string", "objectSubTypeId": 2, "objectTypeId": 2, "pluginId": 8, "severity": 7, "triggerConditions": [ { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} } ], "triggerExpression": "string", "triggerMessage": "string", "type": "flow", "useCustomTraps": false, "useDefaultTraps": false, "useDeviceTraps": true, "userEnabled": 7 }, { "appendConditionMessages": false, "clearConditions": [ { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} } ], "clearExpression": "string", "clearMessage": "string", "description": "string", "flow": { "direction": 2, "filterId": 3, "id": 6, "viewId": 5 }, "folderId": 9, "groupId": 8, "groupIdList": [ 3, 10, 10, 5, 4, 9, 10 ], "id": 1, "isDeviceGroup": false, "isMemberOfAny": false, "lastUpdated": 9, "mailOnce": true, "mailPeriod": 6, "mailTo": "string", "name": "string", "objectSubTypeId": 2, "objectTypeId": 2, "pluginId": 3, "severity": 2, "triggerConditions": [ { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} } ], "triggerExpression": "string", "triggerMessage": "string", "type": "other", "useCustomTraps": true, "useDefaultTraps": true, "useDeviceTraps": true, "userEnabled": 7 }, { "appendConditionMessages": true, "clearConditions": [ { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} } ], "clearExpression": "string", "clearMessage": "string", "description": "string", "flow": { "direction": 6, "filterId": 4, "id": 10, "viewId": 5 }, "folderId": 7, "groupId": 4, "groupIdList": [ 10, 3, 9, 3, 3, 3, 8, 1 ], "id": 1, "isDeviceGroup": false, "isMemberOfAny": false, "lastUpdated": 1, "mailOnce": false, "mailPeriod": 3, "mailTo": "string", "name": "string", "objectSubTypeId": 9, "objectTypeId": 5, "pluginId": 3, "severity": 5, "triggerConditions": [ { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} } ], "triggerExpression": "string", "triggerMessage": "string", "type": "other", "useCustomTraps": true, "useDefaultTraps": false, "useDeviceTraps": true, "userEnabled": 1 }, { "appendConditionMessages": true, "clearConditions": [ { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} } ], "clearExpression": "string", "clearMessage": "string", "description": "string", "flow": { "direction": 9, "filterId": 7, "id": 7, "viewId": 7 }, "folderId": 5, "groupId": 1, "groupIdList": [ 9, 2, 10, 8 ], "id": 3, "isDeviceGroup": false, "isMemberOfAny": false, "lastUpdated": 9, "mailOnce": false, "mailPeriod": 9, "mailTo": "string", "name": "string", "objectSubTypeId": 10, "objectTypeId": 9, "pluginId": 4, "severity": 3, "triggerConditions": [ { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} } ], "triggerExpression": "string", "triggerMessage": "string", "type": "other", "useCustomTraps": false, "useDefaultTraps": false, "useDeviceTraps": false, "userEnabled": 3 }, { "appendConditionMessages": true, "clearConditions": [ { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} } ], "clearExpression": "string", "clearMessage": "string", "description": "string", "flow": { "direction": 6, "filterId": 5, "id": 2, "viewId": 5 }, "folderId": 4, "groupId": 2, "groupIdList": [ 5, 10, 8, 8, 9, 8, 1, 2, 6, 10 ], "id": 9, "isDeviceGroup": false, "isMemberOfAny": false, "lastUpdated": 5, "mailOnce": true, "mailPeriod": 8, "mailTo": "string", "name": "string", "objectSubTypeId": 4, "objectTypeId": 6, "pluginId": 6, "severity": 1, "triggerConditions": [ { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} } ], "triggerExpression": "string", "triggerMessage": "string", "type": "other", "useCustomTraps": true, "useDefaultTraps": false, "useDeviceTraps": true, "userEnabled": 8 }, { "appendConditionMessages": false, "clearConditions": [ { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} } ], "clearExpression": "string", "clearMessage": "string", "description": "string", "flow": { "direction": 5, "filterId": 7, "id": 7, "viewId": 4 }, "folderId": 1, "groupId": 2, "groupIdList": [ 5, 3, 8 ], "id": 10, "isDeviceGroup": true, "isMemberOfAny": true, "lastUpdated": 2, "mailOnce": false, "mailPeriod": 9, "mailTo": "string", "name": "string", "objectSubTypeId": 9, "objectTypeId": 8, "pluginId": 3, "severity": 1, "triggerConditions": [ { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} }, { "aggregation": {}, "comparison": {}, "duration": {}, "id": {}, "indicatorTypeId": {}, "isTrigger": {}, "message": {}, "policyId": {}, "sigmaDirection": {}, "type": {}, "unit": {}, "value": {} } ], "triggerExpression": "string", "triggerMessage": "string", "type": "other", "useCustomTraps": false, "useDefaultTraps": false, "useDeviceTraps": false, "userEnabled": 4 } ], "pageNumber": 5, "pageSize": 9, "totalElements": 4, "totalPages": 9 }