stack kb security-entity-analytics-api configure-risk-engine-saved-object cli command

Auth required Idempotent Scope: global
elastic stack kb security-entity-analytics-api configure-risk-engine-saved-object \
  [options]
		

Configure the Risk Engine Saved Object

Behaviour flags:

--dry-run — validate all inputs and exit without performing any action

--enable-reset-to-zero
--exclude-alert-statuses string[]

Repeatable: pass --exclude-alert-statuses multiple times to supply more than one value

--exclude-alert-tags string[]

Repeatable: pass --exclude-alert-tags multiple times to supply more than one value

--filters string[]

Repeatable: pass --filters multiple times to supply more than one value

--page-size number
Number of entities to score per page. Higher values reduce total scoring time by reducing the number of alert-index scans, but cannot exceed the ES|QL result limit (10,000 by default).
--range string
--input-file string
path to a JSON file to use as command input
--dry-run
validate all inputs and exit without performing any action (preview changes without applying them)
--json

output as JSON