Detection & Response Rules
- 01 Sep 2023
- 1 Minute to read
- Print
- Dark
This documentation version is deprecated, please click here for the latest version.
Detection & Response Rules
- Updated on 01 Sep 2023
- 1 Minute to read
- Print
- Dark
Article summary
Did you find this summary helpful?
Thank you for your feedback!
Format
Permissions
There are three "sub-categories" within detection and response rules contained in Hive.
dr-general
pertains to rules that your organization has created and/or controls.dr-managed
pertains to rules that you can use for detection, however are managed or curated by another party (i.e. Soteria rules).dr-service
is a protected namespace, and users will only ever have metadata permissions.
dr-general
dr.list
dr.set
dr.del
dr-managed
dr.list.managed
dr.set.managed
dr.del.managed
dr-service
dr.list
ordr.list.managed
(metadata only)dr.set
ordr.set.managed
(metadata only)
Command-Line Usage
Usage
Example
Was this article helpful?