stack kb security-timeline-api get-timelines cli command
Auth required
Idempotent
Scope: global
elastic stack kb security-timeline-api get-timelines [options]
Get Timelines or Timeline templates
Behaviour flags:
--dry-run — validate all inputs and exit without performing any action
--only-user-favoriteenum-
If
true, only Timelines that the current user has marked as favorite are returned.Values: true, false
--timeline-typeenum-
Restrict results to
defaultinvestigation timelines ortemplatetimeline templates.Values: default, template
--sort-fieldenum-
Field used to sort the list (
title,description,updated, orcreated).Values: title, description, updated, created
--sort-orderenum-
Whether to sort the results
ascendingordescendingValues: asc, desc
--page-sizestring- How many results should returned at once
--page-indexstring- How many pages should be skipped
--searchstring- Allows to search for timelines by their title
--statusenum-
Filter by timeline lifecycle state (
active,draft, orimmutable).Values: active, draft, immutable
--input-filestring- path to a JSON file to use as command input
--[no-]dry-run- validate all inputs and exit without performing any action (preview changes without applying them)
--[no-]json-
output as JSON