stack kb security-detections-api delete-rule cli command
Destructive
Auth required
Idempotent
Scope: global
elastic stack kb security-detections-api delete-rule [options]
Delete a detection rule
Behaviour flags:
--dry-run — validate all inputs and exit without performing any action
--idstring- The rule's
idvalue. --rule-idstring- The rule's
rule_idvalue. --input-filestring- path to a JSON file to use as command input
--[no-]dry-run- validate all inputs and exit without performing any action (preview changes without applying them)
--[no-]json-
output as JSON