Qradar - Network Inbound Investigation
  • 02 Apr 2025
  • 1 Minute to read
  • Dark
    Light
  • PDF

Qradar - Network Inbound Investigation

  • Dark
    Light
  • PDF

Article summary

Qradar - Network Inbound Investigation

Description

Qradar Network Inbound Investigation is a playbook that helps organizations quickly and easily investigate inbound network traffic. This solution provides a comprehensive set of tools to identify suspicious activity and investigate potential threats. It leverages the power of IBM QRadar to analyze network traffic, detect malicious activity, and alert the security team of any suspicious activity. With this playbook, organizations can quickly investigate inbound network traffic, identify malicious actors, and take action to protect their networks. This playbook also provides detailed insights into the source and destination of network traffic, as well as the type of traffic and its volume. With this information, organizations can better understand their network traffic patterns and identify potential security threats. QRadar Network Inbound Investigation is an invaluable tool for organizations looking to protect their networks from malicious actors and investigate potential threats.

Trigger Request

  • HTTP Post Request

  • Headers:

KeyValue
Content-Typeapplication/json
  • Json body parameters:
ParametersTypeDescription
alertIdstringPlease provide the description of this parameter.
asmarrayPlease provide the description of this parameter.
baracudaarrayPlease provide the description of this parameter.
fortigatearrayPlease provide the description of this parameter.
fortiwebarrayPlease provide the description of this parameter.

Supported CDC Versions

  • 2.8

Was this article helpful?