Source summary information
The Sources page displays summary information for all configured sources. This reference provides brief descriptions of the fields in the summary display. For detailed information on these fields, see descriptions in the relevant configuration topic for the source. Refer to Options for ingesting data sources.
|
Field |
Description |
|---|---|
|
Name |
The source name. |
|
Type |
The data format of the source, such asSTIX or Flat File . |
|
Delivery |
The method Threat Intelligence Director uses to retrieve the source. |
|
Action |
The action (Block or Monitor ) that the system is configured to perform on traffic matching the data contained within this source. For more information about Threat Intelligence Director actions, including availability, inheritance, and overriding inheritance, refer to Factors that affect the action taken. |
|
Publish |
On or Off toggle specifying whether Threat Intelligence Director publishes data from the source to registered elements (managed devices configured to support Threat Intelligence Director). Indicators can inherit Publish settings from a parent source, and observables can inherit Publish settings from a parent indicator. For more information, refer to Inheritance in Threat Intelligence Director configurations. |
|
Last Updated |
The date and time Threat Intelligence Director last updated the source. |
|
Status |
The current status of the source:
Refresh the page to update the status. |
|
Edit ( |
Clicking this icon allows you to edit settings for the source. |
|
Delete ( |
Clicking this icon permanently deletes the source. |

)