New FalconNgsCaseSla - CrowdStrike/psfalcon GitHub Wiki

New-FalconNgsCaseSla

SYNOPSIS

Create a Falcon NGSIEM case SLA

DESCRIPTION

Requires 'Case Templates: Write'.

PARAMETERS

Name Type Description Min Max Allowed Pipeline PipelineByName
Name String SLA name X
Description String SLA description X
Goal Object[] Objects containing 'goals' properties ('duration_seconds', 'escalation_policy', 'type') X

SYNTAX

New-FalconNgsCaseSla [-Name] <String> [[-Description] <String>] [[-Goal] <Object[]>] [-WhatIf] [-Confirm] [<CommonParameters>]

REFERENCE

Endpoints

POST /casemgmt/entities/slas/v1

falconpy

entities_slas_post_v1

USAGE

Create an SLA

New-FalconNgsCaseSla -Name 'high severity' -Description 'SLA for high severity cases' -Goal @{ duration_seconds = 90; escalation_policy = @{ steps = @(@{ escalate_after_seconds = 0; notification_group_id = 'id' })}; type = 'ack' }, @{ duration_seconds = 300; type = 'resolve' }

2025-08-25: PSFalcon v2.2.9

⚠️ **GitHub.com Fallback** ⚠️