enrich_log_line
Extract IP addresses from log lines and enrich them with AbuseIPDB threat intelligence data to identify potentially malicious activity based on confidence thresholds.
Instructions
Extract and enrich IP addresses from a log line with AbuseIPDB data
Input Schema
TableJSON Schema
| Name | Required | Description | Default |
|---|---|---|---|
| log_line | Yes | Log line containing IP addresses to enrich | |
| threshold | No | Abuse confidence threshold for flagging (0-100) | |
| max_age_days | No | Maximum age of reports to consider in days |