stack kb security-timeline-api delete-timelines cli command
Destructive
Auth required
Idempotent
Scope: global
elastic stack kb security-timeline-api delete-timelines \
--saved-object-ids <saved-object-ids> \
[options]
Delete Timelines or Timeline templates
Behaviour flags:
--dry-run — validate all inputs and exit without performing any action
--saved-object-idsstring[]required-
The list of IDs of the Timelines or Timeline templates to delete
Repeatable: pass
--saved-object-idsmultiple times to supply more than one value --search-idsstring[]-
Saved search IDs that should be deleted alongside the timelines
Repeatable: pass
--search-idsmultiple times to supply more than one value --input-filestring- path to a JSON file to use as command input
--dry-run- validate all inputs and exit without performing any action (preview changes without applying them)
--yes- confirm destructive action without prompting
--json-
output as JSON