Skip to content
Release: Australia · Updated: 2026-03-12 · Official documentation · View source

Close Session Flow Action

Closes a Carbon Black session within the flow.

The Close Session activity can be used with any flow to close a Carbon Black session.

Results

Possible results for this flow action are:

ResultDescription
SuccessSession closed.
FailureSession not closed. More error information is available in the flow action output error.

Input variables

Input variables determine the initial behavior of the flow action.

VariableDescription
api_tokenCarbon Black API key.
endpoint_baseBase URL of the Carbon Black API.
session_idSession identifier.
use_mid_serverDetermines whether the REST activity uses the MID server to interact with Carbon Black or not.

Output variables

The output variables contain data that can be used in subsequent activities.

VariableDescription
status_codeDetermines if the request was successful. If not, displays an HTTP error code and message.
outputAPI variables

Parent Topic:Security Operations Carbon Black Integration - Get Running Processes Flow