stack kb security-exceptions-api read-exception-list cli command
Auth required
Idempotent
Scope: global
elastic stack kb security-exceptions-api read-exception-list [options]
Get exception list details
Behaviour flags:
--dry-run — validate all inputs and exit without performing any action
--idstring- Exception list's identifier. Either
idorlist_idmust be specified. --list-idstring- Human readable exception list string identifier, e.g.
trusted-linux-processes. Eitheridorlist_idmust be specified. --namespace-typeenum-
When
single, the list is resolved in the current Kibana space. Whenagnostic, the list is a global (space-agnostic) container. Required for looking up the correct list whenlist_idis not unique.Values: agnostic, single
--input-filestring- path to a JSON file to use as command input
--dry-run- validate all inputs and exit without performing any action (preview changes without applying them)
--json-
output as JSON