Actions56
- Acquisition Actions
- Asset Actions
- Baseline Actions
- Case Actions
- InterACT Actions
- Organization Actions
- Repository Actions
- Task Actions
- Triage Rule Actions
- User Actions
Case → Get Many
AI-generatedOverview
This node operation retrieves multiple cases from the AIR system based on specified criteria. It is useful for scenarios where users need to list or filter cases within an organization, such as fetching all open cases, searching cases by term, or paginating through case records. For example, a security analyst might use this operation to get all open cases in a particular organization to review ongoing investigations.
Use Case Examples
- Retrieve all cases for a specific organization.
- Get all open cases with a search term filter.
- Paginate through cases by specifying page number and size.
Properties
| Name | Meaning |
|---|---|
| Organization | Specifies the organization from which to retrieve cases. Can be selected from a list, by ID (comma-separated numbers or '0' for all organizations), or by name. Required for the operation. |
| Additional Fields | Optional parameters to refine the case retrieval, including pagination and filtering options. |
Output
JSON
cases- An array of case objects retrieved based on the specified criteria.totalCount- The total number of cases matching the query criteria.
Dependencies
- Requires an API key credential for AIR system authentication.
Troubleshooting
- Ensure the organization ID or name is correctly specified; invalid IDs or names may result in no data or errors.
- If using '0' for all organizations, verify that the API and user permissions support this operation.
- Pagination parameters must be positive integers; invalid values may cause errors or unexpected results.
- Common errors include authentication failures due to missing or invalid API credentials, which should be checked and updated as needed.