Skip to content

Invoke FalconPreventionPolicyAction

bk-cs edited this page Sep 27, 2022 · 20 revisions

Invoke-FalconPreventionPolicyAction

SYNOPSIS

Perform actions on Prevention policies

DESCRIPTION

Requires 'Prevention Policies: Write'.

PARAMETERS

Name Type Min Max Allowed Pipeline PipelineByName Description
Name String add-host-group
add-rule-group
disable
enable
remove-host-group
remove-rule-group
Action to perform
GroupId String Host or rule group identifier
Id String X X Policy identifier

SYNTAX

Invoke-FalconPreventionPolicyAction [-Name] <String> [[-GroupId] <String>] [-Id] <String> [-WhatIf] [-Confirm] [<CommonParameters>]

USAGE

Assign host groups to policies

Invoke-FalconPreventionPolicyAction -Name add-host-group -Id <policy_id> -GroupId <host_group_id>
Get-FalconPreventionPolicy -Filter "name:'my_policy'" | Invoke-FalconPreventionPolicyAction -Name add-host-group -GroupId <host_group_id>

Generated 20220922 using PSFalcon v2.2.3

Clone this wiki locally