Open hazcod opened 1 year ago
Thank you for your feedback. This has been routed to the support team for assistance.
Just peeking in here again, I sometimes have a pipeline that needs to run 1 hour because it can't mass-delete expired TI indicators.
Feature Request
In order to delete threat intelligence indicators in Azure Sentinel, we currently need to create a Pager with a PageSize which will iterate over TI items. But we still need to delete them seperately, which is not performant since TI items are often very numerous.
Example current code:
Proposal
Create, if supported by the Azure API, a method to mass-delete TI items by providing an array of UUIDs.