Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Get-AzSentinelAlertRule doesn't show Techniques mapped in the rules. #9491

Closed
ovcrash opened this issue Nov 27, 2023 · 3 comments
Closed

Get-AzSentinelAlertRule doesn't show Techniques mapped in the rules. #9491

ovcrash opened this issue Nov 27, 2023 · 3 comments
Assignees
Labels
Analytic Rules enhancement New feature or request

Comments

@ovcrash
Copy link

ovcrash commented Nov 27, 2023

Describe the bug
A clear and concise description of what the bug is.

To Reproduce
Use Get-AzSentinelAlertRule to get a rule or all rules and it will only output the Tactics but not the Techniques.
When we go into the GUI, we can clearly see the Tactics and Techniques.

Expected behavior
We should see the Tactics and Techniques that are mapped on the rule.

Screenshots
n/a

Desktop (please complete the following information):
Script 3.1.1 Az.SecurityInsights

Smartphone (please complete the following information):
n/a

Additional context
In this documentation:
https://learn.microsoft.com/en-us/rest/api/securityinsights/alert-rules/list?view=rest-securityinsights-2023-10-01-preview&tabs=HTTP
They do show in the Responses section, that there is a Techniques field in the Sample Response section.

Copy link
Contributor

Thank you for submitting an Issue to the Azure Sentinel GitHub repo! You should expect an initial response to your Issue from the team within 5 business days. Note that this response may be delayed during holiday periods. For urgent, production-affecting issues please raise a support ticket via the Azure Portal.

@v-sudkharat
Copy link
Contributor

Hi @ovcrash, Thanks for flagging this issue, we will investigate this issue and get back to you with some updates by 04-12-2023. Thanks!

@v-sudkharat v-sudkharat added the enhancement New feature or request label Dec 4, 2023
@v-sudkharat
Copy link
Contributor

Hi @ovcrash, I hope this message finds you well. For a more thorough investigation of this issue, please reach out to our dedicated support team via the following GitHub repository: https://github.com/Azure/azure-powershell.
Please raise this issue there so our team can examine and address it accordingly.
So. closing this issue form here. If you still need support for this issue, feel free to re-open it any time. Thank you for your co-operation.

Thanks!

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Analytic Rules enhancement New feature or request
Projects
None yet
Development

No branches or pull requests

3 participants