Endpoint configuration · GraphQL query

disk query

Retrieves a Disk by its graph object id: a physical disk drive attached to an endpoint, with its partitions, volumes, and I/O statistics, on Windows, macOS, and Linux. An Endpoint lists its current disks through disks and their history through disksSeen; find them across endpoints with graphSearch on the DISK object type. Returns a not-found error when no object has the id, and an error when the id belongs to another object type.

Response

Returns a DiskPayload!

Arguments

Name Description
id - ID! The Disk identifier.
mockOptions - MockDataInput

Options for mock data generation. Options supported: key: "PLATFORM", value: OsPlatform

example: "mockOptions": { "options": [ { "key": "PLATFORM", "value": "WINDOWS" } ] }

Example

Query

query disk(
  $id: ID!,
  $mockOptions: MockDataInput
) {
  disk(
    id: $id,
    mockOptions: $mockOptions
  ) {
    node {
      id
      orgId
      seen {
        ...SeenOnlineFragment
      }
      objectType
      objectTypeLabel
      displayName
      firstSeen
      lastSeen
      createdAt
      updatedAt
      snapshotInfo {
        ...GraphObjectSnapshotInfoFragment
      }
      endpoint {
        ...EndpointFragment
      }
      driveId
      serial
      size
      vendor
      model
      manufacturer
      description
      busType
      partitions {
        ...PartitionFragment
      }
      volumes {
        ...VolumeFragment
      }
      stats {
        ...DiskIoStatFragment
      }
      findings {
        ...FindingsPayloadFragment
      }
      issues {
        ...IssuesPayloadFragment
      }
      issuesSummary {
        ...IssuesSummaryFragment
      }
    }
  }
}

Variables

{"id": 4, "mockOptions": MockDataInput}

Response

{"data": {"disk": {"node": Disk}}}