Define object-observable relationships
Define relationships between SDOs and the observable object (SCO).
Before you begin
Role required: sn_ti.admin
Procedure
Navigate to All > Threat Intelligence > IoC Repository > Object-Observable-Relationships.
Click New.
Complete the fields in the form as appropriate.
Field Description Object Select and define the source object. Type Enter a descriptive name to identify the object type. Observable Select and define the observable. Relationship Type A description that provides more details and context about the relationship type. Source Specifies the threat source from which this record is created. Source ID Uniquely identifies the source object. Click Submit.
Parent Topic:Relationships