Update an MPE Rule on the basis of MPE Policy Id and MPE Rule Id.

* Update the properties of an MPE rule based on the MPE Policy Id and MPE Rule Id provided by the user.

* Override Data Management Settings is enabled then def message archive mode can not be set to defalut.

* MPERuleId provided in path parameter will considered for update operation.

Recent Requests
Log in to see full request history
TimeStatusUser Agent
Retrieving recent requests…
LoadingLoading…
Path Params
integer
required

The id of a specific MPE policy.

integer
required
-2147483647 to 2147483647

The MPE Rule Id stored in the database.

Body Params

The properites of the MPE Rule including all the required parameters, associated to a specific MPE policy.

integer
-2147483648 to 2147483647

The Object Id generated by LogRhythm. Required for PUT operations (updates).

boolean

Individual MPE Rule is enabled or not.

boolean

Override logsource log data management settings.

string
enum
Allowed:
boolean

Drop log enabled or not

boolean

Drop raw enabled or not.

boolean

Disable automatic host contextualization.

integer
enum
Defaults to 0

* 0 - No Rating
* 1 - Low-Low
* 2 - Low-Medium
* 3 - Low-High
* 4 - Medium-Low
* 5 - Medium-Medium
* 6 - Medium-High
* 7 - High-Low
* 8 - High-Medium
* 9 - High-High

boolean

Is event.

logMartRecord
object
Responses

Language
Credentials
Header
LoadingLoading…
Response
Click Try It! to start a request and see the response here! Or choose an example:
application/json