v1
latestOpenAPI 3.0.02026-07-14512083.9 KBCreate a new Live query campaign
Request body
Target Devices in Live Query
Target All Devices in Live Query
Target all MacOS devices in Live Query
Target all windows devices in Live Query
Target all Linux devices in Live Query
The sql to be run on all targeted devices
The title of the live query
Response
The newly created Live query campaign
The canonical identifier for this live query campaign
The sql to be run on all targeted devices
The title of the live query
The creation timestamp of the live query campaign
Describes whether or not the author of the LQ has published the live query (true) or if it is still a draft (false)
Editing a Live Query results in it's revision being incremented. When the live query's revision is incremented, it causes the live query to be re-run on all target devices
The number of device that have successfully run the query
The number of device that returned an error when attempting to run the query
The number of device that have not yet reported results or errors running the device
The names of the tables referenced in the osquery SQL