incidents_alerts
Creates, updates, deletes, gets or lists a incidents_alerts
resource.
Overview
Name | incidents_alerts |
Type | Resource |
Id | azure.sentinel.incidents_alerts |
Fields
Name | Datatype | Description |
---|---|---|
kind | string | The kind of the entity |
properties | object | SecurityAlert entity property bag. |
Methods
Name | Accessible by | Required Params | Description |
---|---|---|---|
list | SELECT | incidentId, resourceGroupName, subscriptionId, workspaceName | Gets all alerts for an incident. |
SELECT
examples
Gets all alerts for an incident.
SELECT
kind,
properties
FROM azure.sentinel.incidents_alerts
WHERE incidentId = '{{ incidentId }}'
AND resourceGroupName = '{{ resourceGroupName }}'
AND subscriptionId = '{{ subscriptionId }}'
AND workspaceName = '{{ workspaceName }}';