stack kb security-osquery-api osquery-create-packs cli command
Auth required
elastic stack kb security-osquery-api osquery-create-packs [options]
Create a pack
Behaviour flags:
--dry-run — validate all inputs and exit without performing any action
--descriptionstring--enabled--intervalnumber--namestring--policy-idsstring[]-
Repeatable: pass
--policy-idsmultiple times to supply more than one value --queriesstring--rrule-schedulestring--schedule-typeenum-
Values: interval, rrule
--input-filestring- path to a JSON file to use as command input
--dry-run- validate all inputs and exit without performing any action (preview changes without applying them)
--json-
output as JSON