Indicator summary information
The Indicators page displays summary information for all indicators associated with configured sources.
|
Field |
Description |
|---|---|
|
Type |
Hover over the type to see the specific observable. |
|
Name |
The indicator name. |
|
Source |
The source that contained the indicator (the parent source). |
|
Incidents |
Information about any incidents associated with the indicator:
|
|
Action |
The action associated with the indicator. For more information, refer to Edit Threat Intelligence Director actions at the source, indicator, or observable Level. Indicators can inherit Action settings from a parent source, and observables can inherit Action settings from a parent indicator. For more information, refer to Inheritance in Threat Intelligence Director configurations. |
|
Publish |
The publish setting for the indicator. For more information, refer to Pause or publish Threat Intelligence Director data at the source, indicator, or observable Level. Indicators can inherit Publish settings from a parent source, and observables can inherit Publish settings from a parent indicator. For more information, refer to Inheritance in Threat Intelligence Director configurations. |
|
Last Updated |
The date and time Threat Intelligence Director last updated the indicator. |
|
Status |
The current status of the indicator:
|