xql_add_dataset
Create a lookup dataset in Cortex XSIAM by defining its name and schema, enabling data enrichment and reference lookups for security investigations.
Instructions
Add Dataset
Add a dataset of type lookup with the specified name and schema.
Required license: Cortex XSIAM Premium or Cortex XSIAM Enterprise or Cortex XSIAM Enterprise Plus
[POST /public_api/v1/xql/add_dataset] · Dataset Management
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| request_data | No |