What is the primary function of TheHive Tool node in n8n?
This node allows users to seamlessly handle security incident responses by connecting n8n workflows directly with TheHive platform. It supports crucial Integrations like managing Alerts, Cases, and Observables.
How can I use TheHive events to automatically start an n8n workflow?
You can set up this node to listen for specific events. For example, a new Alert created in TheHive can serve as the trigger, initiating a complex automation workflow in n8n for immediate incident response.
Which types of security objects can I interact with using TheHive Tool node?
The node facilitates comprehensive Integrations with core TheHive data types, including creating, retrieving, and updating Alerts, Cases, Tasks, and Observables within your automated workflows.
Can this node modify existing data in TheHive, or is it read-only?
The TheHive Tool node is designed for full interaction. It can perform actions like updating the status of an existing Case or linking new evidence (Observables) through precise workflow Integrations.
What authentication is required to set up the Integrations with TheHive using this node?
To ensure secure Integrations, the node requires the TheHive server URL and a valid API key. This credential setup authorizes the node to execute the defined actions or respond to a trigger effectively.