stack kb security-entity-analytics-api get-watchlist cli command
Auth required
Idempotent
Scope: global
elastic stack kb security-entity-analytics-api get-watchlist --id <id> [options]
Get a watchlist by ID
Behaviour flags:
--dry-run — validate all inputs and exit without performing any action
--idstringrequired- Unique ID of the watchlist
--input-filestring- path to a JSON file to use as command input
--[no-]dry-run- validate all inputs and exit without performing any action (preview changes without applying them)
--[no-]json-
output as JSON