stack kb security-entity-analytics-api list-priv-mon-users cli command
Auth required
Idempotent
Scope: global
elastic stack kb security-entity-analytics-api list-priv-mon-users [options]
List all monitored users
Behaviour flags:
--dry-run — validate all inputs and exit without performing any action
--kqlstring- KQL query to filter the list of monitored users
--input-filestring- path to a JSON file to use as command input
--[no-]dry-run- validate all inputs and exit without performing any action (preview changes without applying them)
--[no-]json-
output as JSON