AIR icon

AIR

Manage Binalyze AIR resources

Triage Rule → Delete Triage Rule

AI-generated

Overview

This node operation deletes a specified triage rule within the Binalyze AIR system. It is useful for workflows that need to automate the removal of triage rules, such as cleaning up outdated or irrelevant rules in a digital forensics or incident response environment.

Use Case Examples

  1. Automatically delete a triage rule when a case is closed to maintain an up-to-date rule set.
  2. Remove triage rules that are no longer applicable based on certain triggers or conditions in a security workflow.

Properties

Name Meaning
Triage Rule The triage rule to operate on, identified either by selecting from a list of existing triage rules or by specifying its ID directly.

Output

JSON

  • success - Indicates whether the triage rule was successfully deleted (true or false).
  • triageRuleId - The ID of the triage rule that was deleted.

Dependencies

  • Requires an API key credential for Binalyze AIR to authenticate and authorize the deletion request.

Troubleshooting

  • Ensure the triage rule ID is valid and exists; otherwise, the deletion will fail with an error indicating the rule was not found.
  • Check API credentials and permissions to confirm the node has rights to delete triage rules.
  • If the node throws an 'Unknown resource' error, verify that the resource parameter is correctly set to 'triagerules'.

Discussion