Security Detections API
Assign and unassign users from attack discovery alerts
Spaces method and path for this operation:
<div><span class="operation-verb post">post</span> <span class="operation-path">/s/{space_id}/api/detection_engine/attacks/assignees</span></div>Refer to Spaces for more information.
Assign users to attack discovery alerts, and unassign them from alerts. Optionally cascade the change to related detection alerts via kibana.alert.attack_discovery.alert_ids.
info You cannot add and remove the same assignee in the same request.
post/api/detection_engine/attacks/assignees
Request body
Response
Successful response
object required
Elasticsearch update by query response