Compartilhar via


ArmSecurityInsightsModelFactory.ScheduledAlertRuleTemplate Método

Definição

Inicializa uma nova instância de ScheduledAlertRuleTemplate.

public static Azure.ResourceManager.SecurityInsights.Models.ScheduledAlertRuleTemplate ScheduledAlertRuleTemplate (Azure.Core.ResourceIdentifier id = default, string name = default, Azure.Core.ResourceType resourceType = default, Azure.ResourceManager.Models.SystemData systemData = default, int? alertRulesCreatedByTemplateCount = default, DateTimeOffset? createdDateUTC = default, DateTimeOffset? lastUpdatedDateUTC = default, string description = default, string displayName = default, System.Collections.Generic.IEnumerable<Azure.ResourceManager.SecurityInsights.Models.AlertRuleTemplateDataSource> requiredDataConnectors = default, Azure.ResourceManager.SecurityInsights.Models.SecurityInsightsAlertRuleTemplateStatus? status = default, string query = default, TimeSpan? queryFrequency = default, TimeSpan? queryPeriod = default, Azure.ResourceManager.SecurityInsights.Models.SecurityInsightsAlertSeverity? severity = default, Azure.ResourceManager.SecurityInsights.Models.SecurityInsightsAlertRuleTriggerOperator? triggerOperator = default, int? triggerThreshold = default, System.Collections.Generic.IEnumerable<Azure.ResourceManager.SecurityInsights.Models.SecurityInsightsAttackTactic> tactics = default, System.Collections.Generic.IEnumerable<string> techniques = default, string version = default, Azure.ResourceManager.SecurityInsights.Models.EventGroupingAggregationKind? eventGroupingAggregationKind = default, System.Collections.Generic.IDictionary<string,string> customDetails = default, System.Collections.Generic.IEnumerable<Azure.ResourceManager.SecurityInsights.Models.SecurityInsightsAlertRuleEntityMapping> entityMappings = default, Azure.ResourceManager.SecurityInsights.Models.SecurityInsightsAlertDetailsOverride alertDetailsOverride = default);
static member ScheduledAlertRuleTemplate : Azure.Core.ResourceIdentifier * string * Azure.Core.ResourceType * Azure.ResourceManager.Models.SystemData * Nullable<int> * Nullable<DateTimeOffset> * Nullable<DateTimeOffset> * string * string * seq<Azure.ResourceManager.SecurityInsights.Models.AlertRuleTemplateDataSource> * Nullable<Azure.ResourceManager.SecurityInsights.Models.SecurityInsightsAlertRuleTemplateStatus> * string * Nullable<TimeSpan> * Nullable<TimeSpan> * Nullable<Azure.ResourceManager.SecurityInsights.Models.SecurityInsightsAlertSeverity> * Nullable<Azure.ResourceManager.SecurityInsights.Models.SecurityInsightsAlertRuleTriggerOperator> * Nullable<int> * seq<Azure.ResourceManager.SecurityInsights.Models.SecurityInsightsAttackTactic> * seq<string> * string * Nullable<Azure.ResourceManager.SecurityInsights.Models.EventGroupingAggregationKind> * System.Collections.Generic.IDictionary<string, string> * seq<Azure.ResourceManager.SecurityInsights.Models.SecurityInsightsAlertRuleEntityMapping> * Azure.ResourceManager.SecurityInsights.Models.SecurityInsightsAlertDetailsOverride -> Azure.ResourceManager.SecurityInsights.Models.ScheduledAlertRuleTemplate
Public Shared Function ScheduledAlertRuleTemplate (Optional id As ResourceIdentifier = Nothing, Optional name As String = Nothing, Optional resourceType As ResourceType = Nothing, Optional systemData As SystemData = Nothing, Optional alertRulesCreatedByTemplateCount As Nullable(Of Integer) = Nothing, Optional createdDateUTC As Nullable(Of DateTimeOffset) = Nothing, Optional lastUpdatedDateUTC As Nullable(Of DateTimeOffset) = Nothing, Optional description As String = Nothing, Optional displayName As String = Nothing, Optional requiredDataConnectors As IEnumerable(Of AlertRuleTemplateDataSource) = Nothing, Optional status As Nullable(Of SecurityInsightsAlertRuleTemplateStatus) = Nothing, Optional query As String = Nothing, Optional queryFrequency As Nullable(Of TimeSpan) = Nothing, Optional queryPeriod As Nullable(Of TimeSpan) = Nothing, Optional severity As Nullable(Of SecurityInsightsAlertSeverity) = Nothing, Optional triggerOperator As Nullable(Of SecurityInsightsAlertRuleTriggerOperator) = Nothing, Optional triggerThreshold As Nullable(Of Integer) = Nothing, Optional tactics As IEnumerable(Of SecurityInsightsAttackTactic) = Nothing, Optional techniques As IEnumerable(Of String) = Nothing, Optional version As String = Nothing, Optional eventGroupingAggregationKind As Nullable(Of EventGroupingAggregationKind) = Nothing, Optional customDetails As IDictionary(Of String, String) = Nothing, Optional entityMappings As IEnumerable(Of SecurityInsightsAlertRuleEntityMapping) = Nothing, Optional alertDetailsOverride As SecurityInsightsAlertDetailsOverride = Nothing) As ScheduledAlertRuleTemplate

Parâmetros

name
String

O nome.

resourceType
ResourceType

O resourceType.

systemData
SystemData

O systemData.

alertRulesCreatedByTemplateCount
Nullable<Int32>

o número de regras de alerta que foram criadas por esse modelo.

createdDateUTC
Nullable<DateTimeOffset>

A hora em que esse modelo de regra de alerta foi adicionado.

lastUpdatedDateUTC
Nullable<DateTimeOffset>

A hora em que esse modelo de regra de alerta foi atualizado pela última vez.

description
String

A descrição do modelo de regra de alerta.

displayName
String

O nome de exibição do modelo de regra de alerta.

requiredDataConnectors
IEnumerable<AlertRuleTemplateDataSource>

Os conectores de dados necessários para este modelo.

status
Nullable<SecurityInsightsAlertRuleTemplateStatus>

O modelo de regra de alerta status.

query
String

A consulta que cria alertas para essa regra.

queryFrequency
Nullable<TimeSpan>

A frequência (no formato de duração ISO 8601) para que essa regra de alerta seja executada.

queryPeriod
Nullable<TimeSpan>

O período (no formato de duração ISO 8601) que essa regra de alerta examina.

severity
Nullable<SecurityInsightsAlertSeverity>

A gravidade dos alertas criados por essa regra de alerta.

triggerOperator
Nullable<SecurityInsightsAlertRuleTriggerOperator>

A operação contra o limite que dispara a regra de alerta.

triggerThreshold
Nullable<Int32>

O limite dispara essa regra de alerta.

tactics
IEnumerable<SecurityInsightsAttackTactic>

As táticas do modelo de regra de alerta.

techniques
IEnumerable<String>

As técnicas do modelo de regra de alerta.

version
String

A versão deste modelo – no formato <a.b.c>, em que todos são números. Por exemplo <, 1.0.2>.

eventGroupingAggregationKind
Nullable<EventGroupingAggregationKind>

As configurações de agrupamento de eventos.

customDetails
IDictionary<String,String>

Dicionário de pares chave-valor de cadeia de caracteres de colunas a serem anexados ao alerta.

entityMappings
IEnumerable<SecurityInsightsAlertRuleEntityMapping>

Matriz dos mapeamentos de entidade da regra de alerta.

alertDetailsOverride
SecurityInsightsAlertDetailsOverride

Os detalhes do alerta substituem as configurações.

Retornos

Uma nova ScheduledAlertRuleTemplate instância para zombar.

Aplica-se a