stack kb security-entity-analytics-api unassign-watchlist-entities cli command

Auth required
elastic stack kb security-entity-analytics-api unassign-watchlist-entities \
  --watchlist-id <watchlist-id> \
  --euids <euids> \
  [options]
		

Manually unassign entities from a watchlist

Behaviour flags:

--dry-run — validate all inputs and exit without performing any action

--watchlist-id string required
The ID of the watchlist to remove entities from
--euids string[] required
The EUIDs of the entities to unassign
--input-file string
path to a JSON file to use as command input
--dry-run
validate all inputs and exit without performing any action (preview changes without applying them)
--json

output as JSON