Details

This atomic belongs to the Cisco XDR: Investigate atomic group.

Gets the status of an investigation from Cisco XDR. An investigation is complete when the number of pending tasks is 0.

Target: Conure APIs

Steps:
[] Extract the investigation GUID
[] Request the investigation status
[] Check if the request was successful:
[]> If it was, attempt to extract the results and set the output variables
[]> If it wasn't, return an error

More information about this API: https://developer.cisco.com/docs/cisco-xdr/investigation-status/

About
Authorship
Cisco Managed