Cortex XSOAR 6.13
Create an Indicator Type
Create a custom indicator type.
When you create a custom indicator type, you configure fields and settings that impact how indicators of that type are enriched, how they are expired, how the verdict is calculated, etc.
Before you create a custom indicator type, you should familiarize yourself with the Indicator Type Profile parameters.
Go to Settings → OBJECTS SETUP → Indicators → Types.
Click the New Indicator Type button.
In the Settings tab, add the required Indicator Type Profile parameters, such as name, regex, etc.
In the Custom Fields tab, Map Custom Indicator Fields, as required.
Last updated
Was this helpful?
