Skip to content

Commit 72f568c

Browse files
authored
Merge pull request #184824 from batamig/patch-129
syntax edit
2 parents 3cd5c47 + 10ee23c commit 72f568c

File tree

1 file changed

+1
-2
lines changed

1 file changed

+1
-2
lines changed

articles/sentinel/work-with-threat-indicators.md

Lines changed: 1 addition & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -94,8 +94,7 @@ Tagging threat indicators is an easy way to group them together to make them eas
9494

9595
:::image type="content" source="media/work-with-threat-indicators/threat-intel-tagging-indicators.png" alt-text="Apply tags to threat indicators" lightbox="media/work-with-threat-indicators/threat-intel-tagging-indicators.png":::
9696

97-
Microsoft Sentinel now allows editing of indicators coming from both 3P sources like TIP's and TAXII servers as well as indicators created on the Microsoft Sentinel UI. For indicators coming from 3P sources we allow editing of a certain set of fields like tags, expiration date, confidence and revoked. For indicators created within Microsoft Sentinel, you can edit any fields of the indicator.
98-
97+
Microsoft Sentinel also allows you to edit indicators, whether they've been created directly in Microsoft Sentinel, or come from partner sources, like TIP and TAXII servers. For indicators created in Microsoft Sentinel, all fields are editable. For indicators coming from partner sources, only specific fields are editable, including tags, *Expiration date*, *Confidence*, and *Revoked*.
9998

10099
## Detect threats with threat indicator-based analytics
101100

0 commit comments

Comments
 (0)