hec_update_exception
Update a whitelist or blacklist entry by its exception ID, modifying sender, recipient, subject, or matching rules.
Instructions
Update an existing whitelist or blacklist entry by its entity ID.
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| excId | Yes | The exception entity ID to update | |
| comment | No | ||
| excType | Yes | ||
| subject | No | ||
| recipient | No | ||
| senderName | No | ||
| senderEmail | No | ||
| senderDomain | No | ||
| attachmentMd5 | No | ||
| subjectMatching | No | ||
| senderEmailMatching | No | ||
| senderDomainMatching | No |