mirror of
https://github.com/MicrosoftDocs/windows-itpro-docs.git
synced 2025-05-19 08:47:22 +00:00
Add page for supported APIs
This commit is contained in:
parent
8f54c5dc38
commit
f69885646f
@ -97,8 +97,8 @@
|
|||||||
#### [Experiment with custom threat intelligence alerts](experiment-custom-ti-windows-defender-advanced-threat-protection.md)
|
#### [Experiment with custom threat intelligence alerts](experiment-custom-ti-windows-defender-advanced-threat-protection.md)
|
||||||
#### [Troubleshoot custom threat intelligence issues](troubleshoot-custom-ti-windows-defender-advanced-threat-protection.md)
|
#### [Troubleshoot custom threat intelligence issues](troubleshoot-custom-ti-windows-defender-advanced-threat-protection.md)
|
||||||
|
|
||||||
### [Use Windows Defender ATP APIs](exposed-apis-windows-defender-advanced-threat-protection-new.md)
|
### [**Beta!** Use Windows Defender ATP APIs](exposed-apis-windows-defender-advanced-threat-protection-new.md)
|
||||||
#### Supported Windows Defender ATP APIs
|
#### [Supported Windows Defender ATP APIs](supported-apis-windows-defender-advanced-threat-protection-new.md)
|
||||||
##### [Advanced Hunting](run-advanced-query-windows-defender-advanced-threat-protection.md)
|
##### [Advanced Hunting](run-advanced-query-windows-defender-advanced-threat-protection.md)
|
||||||
|
|
||||||
|
|
||||||
|
@ -97,3 +97,8 @@ Before using the APIs, you’ll need to create an app that you’ll use to authe
|
|||||||
Click **Properties** > **Yes** > **Save**.
|
Click **Properties** > **Yes** > **Save**.
|
||||||
|
|
||||||

|

|
||||||
|
|
||||||
|
|
||||||
|
|
||||||
|
## Related topics
|
||||||
|
- [Supported Windows Defender ATP APIs](supported-apis-windows-defender-advanced-threat-protection-new.md)
|
||||||
|
@ -0,0 +1,44 @@
|
|||||||
|
---
|
||||||
|
title: Supported Windows Defender Advanced Threat Protection query APIs
|
||||||
|
description: Learn about the specific supported Windows Defender Advanced Threat Protection entities where you can create API calls to.
|
||||||
|
keywords: apis, supported apis, actor, alerts, machine, user, domain, ip, file, advanced queries, advanced hunting
|
||||||
|
search.product: eADQiWindows 10XVcnh
|
||||||
|
ms.prod: w10
|
||||||
|
ms.mktglfcycl: deploy
|
||||||
|
ms.sitesec: library
|
||||||
|
ms.pagetype: security
|
||||||
|
ms.author: macapara
|
||||||
|
author: mjcaparas
|
||||||
|
ms.localizationpriority: medium
|
||||||
|
ms.date: 04/24/2018
|
||||||
|
---
|
||||||
|
|
||||||
|
# Supported Windows Defender ATP query APIs
|
||||||
|
|
||||||
|
**Applies to:**
|
||||||
|
|
||||||
|
- Windows 10 Enterprise
|
||||||
|
- Windows 10 Education
|
||||||
|
- Windows 10 Pro
|
||||||
|
- Windows 10 Pro Education
|
||||||
|
- Windows Defender Advanced Threat Protection (Windows Defender ATP)
|
||||||
|
|
||||||
|
|
||||||
|
|
||||||
|
>Want to experience Windows Defender ATP? [Sign up for a free trial.](https://www.microsoft.com/en-us/WindowsForBusiness/windows-atp?ocid=docs-wdatp-supportedapis-abovefoldlink)
|
||||||
|
|
||||||
|
Learn more about the individual supported entities where you can run API calls to and details such as HTTP request values, request headers and expected responses.
|
||||||
|
|
||||||
|
## In this section
|
||||||
|
Topic | Description
|
||||||
|
:---|:---
|
||||||
|
Advanced Hunting | Run queries from API.
|
||||||
|
Alerts | Run API calls such as get alerts, alert information by ID, alert related actor information, alert related IP information, and alert related machine information.
|
||||||
|
Domain |Run API calls such as get domain related machines, domain related machines, statistics, and check if a domain is seen in your organization.
|
||||||
|
File | Run API calls such as get file information, file related alerts, file related machines, and file statistics.
|
||||||
|
IP | Run API calls such as get IP related alerts, IP related machines, IP statistics, and check if and IP is seen in your organization.
|
||||||
|
Machines | Run API calls such as find machine information by IP, get machines, get machines by ID, information about logged on users, and alerts related to a given machine ID.
|
||||||
|
User | Run API calls such as get alert related user information, user information, user related alerts, and user related machines.
|
||||||
|
|
||||||
|
## Related topic
|
||||||
|
- [Use Windows Defender ATP APIs](exposed-apis-windows-defender-advanced-threat-protection-new.md)
|
Loading…
x
Reference in New Issue
Block a user