Skip to content
Release: Australia · Updated: 2026-03-12 · Official documentation · View source

Configure tooltips for nodemaps

Use this section to configure tooltips for node map relationships on the investigation canvas.

Before you begin

Role required: sn_sec_tisc.admin

Procedure

  1. Navigate to Workspaces > Threat Intelligence Security Center > Administration > Nodemap Controls > Tooltip Configuration.

  2. Select the desired object from the list.

    By default, the following three records are provisioned in the base system.

    1. Observables
    2. Indicators
    3. Objects
    4. Select Observable as an example record.
  3. Add one or more values to the observable record, if required.

    Similarly add values to indicators and other objects.

    Note: Each object supports a maximum of six values.

  4. Select Save to apply the changes.

  5. Go to the Investigation Canvas section and select Refresh icon.

    The same values configured on the Tooltip Configuration page will be displayed on each node map.