stack kb security-exceptions-api delete-exception-list cli command
Destructive
Auth required
Idempotent
Scope: global
elastic stack kb security-exceptions-api delete-exception-list [options]
Delete an exception list
Behaviour flags:
--dry-run — validate all inputs and exit without performing any action
--idstring- Exception list's identifier. Either
idorlist_idmust be specified. --list-idstring- Human readable exception list string identifier, e.g.
trusted-linux-processes. Eitheridorlist_idmust be specified. --namespace-typeenum-
singledeletes the list in the current Kibana space;agnosticdeletes a global list. Must match the list you are removing when usinglist_idorid.Values: agnostic, single
--input-filestring- path to a JSON file to use as command input
--dry-run- validate all inputs and exit without performing any action (preview changes without applying them)
--yes- confirm destructive action without prompting
--json-
output as JSON