Skip to main content
Google Cloud Documentation
Documentation
  • Get Started
  • Get Started with Google Cloud
  • Product List
  • Cloud Customer Care
  • Featured Products
  • Agent Platform
  • Apigee API Management
  • BigQuery
  • Compute Engine
  • Cloud CDN
  • Cloud Run
  • Cloud Storage
  • Cloud SQL
  • Gemini Enterprise
  • Google Kubernetes Engine
  • Looker
  • Cross-product Tools
  • Access and resources management
  • Costs and usage management
  • Infrastructure as code
  • SDK, languages, frameworks, and tools
  • Technology Areas
  • AI and ML
  • Application development
  • Application hosting
  • Compute
  • Data analytics and pipelines
  • Databases
  • Distributed, hybrid, and multicloud
  • Industry solutions
  • Migration
  • Networking
  • Observability and monitoring
  • Security
  • Storage
/
Console
  • English
  • Deutsch
  • Español – América Latina
  • Français
  • Português – Brasil
  • 中文 – 简体
  • 日本語
  • 한국어
Sign in
  • Google Security Operations
Start free
Overview Guides Use cases Reference Support Resources
Google Cloud Documentation
  • Documentation
    • More
    • Overview
    • Guides
    • Use cases
    • Reference
    • Support
    • Resources
  • Console
  • Google SecOps API reference
  • APIs and libraries overview
  • Chronicle API reference
    • Chronicle API overview
    • Authenticate to the Chronicle API
    • Permissions for the Chronicle API
    • Migrate Chronicle API versions
    • Migrate from legacy SIEM APIs to Chronicle API
      • Overview
      • SIEM API endpoint mapping
      • Detailed request and response legacy API to new API mapping
        • CreateCollector
        • CreateForwarder
        • CreateParser
        • CreateRetrohunt
        • CreateRule
        • DeactivateParser
        • DeleteCollector
        • DeleteForwarder
        • DeleteRule
        • EnableLiveRule
        • GetCollector
        • GetForwarder
        • GetParser
        • GetRetrohunt
        • GetRule
        • LegacyCreateOrUpdateCase
        • LegacyCreateSoarAlert
        • LegacySearchCuratedDetections
        • LegacyStreamDetectionAlerts (from StreamDetections)
        • LegacyStreamDetectionAlerts (from StreamRuleNotifications)
        • LegacyUpdateAlert
        • ListCbnParsers
        • ListCollectors
        • ListCuratedRules
        • ListForwarders
        • ListLogs
        • ListParsers
        • ListResults
        • ListRetrohunts
        • ListRules
        • ProvideBigQueryAccess
        • RunRule
        • UpdateCollector
        • UpdateForwarder
        • UpdateRule
        • ValidateCbnParser
    • v1
      • REST Resources
      • instances.feeds
        • Overview
        • importPushLogs
      • projects.locations.instances
        • Overview
        • computeAllFindingsRefinementActivities
        • extractSyslog
        • findEntity
        • findEntityAlerts
        • findRelatedEntities
        • findUdmFieldValues
        • get
        • getBigQueryExport
        • getEnrichmentCombination
        • getRiskConfig
        • getThreatCollectionFilterSet
        • listAllFindingsRefinementDeployments
        • queryProductSourceStats
        • searchEntities
        • summarizeEntitiesFromQuery
        • summarizeEntity
        • udmSearch
        • updateBigQueryExport
        • updateRiskConfig
        • validateQuery
        • verifyReferenceList
        • verifyRuleText
      • projects.locations.instances.alertGroupingRules
        • Overview
        • create
        • delete
        • get
        • list
        • patch
      • projects.locations.instances.announcements
        • Overview
        • create
        • delete
        • get
        • list
        • patch
      • projects.locations.instances.bigQueryExport
        • Overview
        • provision
      • projects.locations.instances.caseCloseDefinitions
        • Overview
        • create
        • delete
        • get
        • list
        • patch
      • projects.locations.instances.caseQueueFilters
        • Overview
        • create
        • delete
        • get
        • getShareConfig
        • list
        • patch
        • updateShareConfig
      • projects.locations.instances.caseStageDefinitions
        • Overview
        • create
        • delete
        • get
        • list
        • patch
      • projects.locations.instances.caseTagDefinitions
        • Overview
        • create
        • delete
        • get
        • import
        • list
        • patch
      • projects.locations.instances.cases
        • Overview
        • addTag
        • createInsight
        • executeBulkAddTag
        • executeBulkAssign
        • executeBulkChangePriority
        • executeBulkChangeStage
        • executeBulkClose
        • executeBulkReopen
        • generateReport
        • get
        • getCaseOverviewData