Get FalconHorizonIom - CrowdStrike/psfalcon Wiki

Get-FalconHorizonIom

SYNOPSIS

Search for Falcon Horizon Indicators of Misconfiguration

DESCRIPTION

Requires 'CSPM Registration: Read'.

PARAMETERS

Name Type Min Max Allowed Pipeline PipelineByName Description
CloudPlatform String aws
azure
gcp
Cloud platform
AccountId String X AWS account or GCP Project identifier
AzureSubscriptionId String X Azure subscription identifier
AzureTenantId String X Azure tenant identifier
Status String new
reoccurring
all
Indicator of Misconfiguration status
Region String Cloud platform region
Severity String High
Medium
Informational
Indicator of Misconfiguration severity
Service String ACM
ACR
Any
App Engine
AppService
BigQuery
Cloud Load Balancing
Cloud Logging
Cloud SQL
Cloud Storage
CloudFormation
CloudTrail
CloudWatch Logs
Cloudfront
Compute Engine
Config
Disk
DynamoDB
EBS
EC2
ECR
EFS
EKS
ELB
EMR
Elasticache
GuardDuty
IAM
Identity
KMS
KeyVault
Kinesis
Kubernetes
Lambda
LoadBalancer
Monitor
NLB/ALB
NetworkSecurityGroup
PostgreSQL
RDS
Redshift
S3
SES
SNS
SQLDatabase
SQLServer
SQS
SSM
Serverless Application Repository
StorageAccount
Subscriptions
VPC
VirtualMachine
VirtualNetwork
Cloud service
Limit Int32 1 5000 Maximum number of results per request
NextToken String Pagination token to retrieve the next set of results
All Switch Repeat requests until all available results are retrieved
Total Switch Display total result count instead of results

SYNTAX

Get-FalconHorizonIom [[-CloudPlatform] <String>] [[-AccountId] <String>] [[-AzureSubscriptionId] <String>] [[-AzureTenantId] <String>] [[-Status] 
<String>] [[-Region] <String>] [[-Severity] <String>] [[-Service] <String>] [[-Limit] <Int32>] [-NextToken <String>] [-All] [-Total] [-WhatIf] -Confirm] [<CommonParameters>]

Generated 20220922 using PSFalcon v2.2.3

⚠️ **GitHub.com Fallback** ⚠️