For the complete documentation index, see llms.txt. This page is also available as Markdown.
XSOAR 8 (SaaS)

Create a widget from an indicator

Create indicator widgets in Cortex XSOAR 8 SaaS.

To create a widget from an indicator, you need to run a query from the Threat Intel page and then save the visual results as a widget. If you do not have a TIM license, the page is called Indicators.

  1. In the Threat Intel (Indicators) page, select the date range from the dropdown list.

  2. In the query field, type the query criteria as required and run the query.

  3. Click create-widget.png.

  4. Click Save.

    The widget is added to the Widgets Library.

    Note

    By default, the widget inherits the date range that you specify when creating the widget, but you can modify the date range when you create the dashboard or report. If the date range for the report or dashboard does not include the widget date range, the data is blank. To override the dashboard or report’s date range, click Use Widget’s date range.

  5. Add the widget to a report or dashboard, as required.

Last updated

Was this helpful?