File path sensors · GraphQL query

endpointPath query

Retrieves an EndpointPath by its graph object id: the files a configured PathSensor found under its path on one endpoint, with each file's stat record, checksum, ACLs, and collected contents. One exists per endpoint and path sensor that has reported data, reachable through the Endpoint's paths field. To check for one exact file across every sensor on an endpoint, use endpointPathEntrySearch. Returns a not-found error when no object has the id, and an error when the id belongs to another object type.

Response

Returns an EndpointPathPayload!

Arguments

Name Description
id - ID! The EndpointPath identifier.
mockOptions - MockDataInput

Options for mock data generation. Options supported: key: "PLATFORM", value: OsPlatform

example: "mockOptions": { "options": [ { "key": "PLATFORM", "value": "WINDOWS" } ] }

Example

Query

query endpointPath(
  $id: ID!,
  $mockOptions: MockDataInput
) {
  endpointPath(
    id: $id,
    mockOptions: $mockOptions
  ) {
    node {
      id
      orgId
      objectType
      objectTypeLabel
      displayName
      firstSeen
      lastSeen
      seen {
        ...SeenOnlineFragment
      }
      createdAt
      updatedAt
      snapshotInfo {
        ...GraphObjectSnapshotInfoFragment
      }
      endpoint {
        ...EndpointFragment
      }
      pathSensor {
        ...PathSensorFragment
      }
      path
      entriesUpdatedAt
      entries {
        ...EndpointPathEntriesPayloadFragment
      }
      entry {
        ...EndpointPathEntryFragment
      }
      findings {
        ...FindingsPayloadFragment
      }
      issues {
        ...IssuesPayloadFragment
      }
      issuesSummary {
        ...IssuesSummaryFragment
      }
    }
  }
}

Variables

{"id": 4, "mockOptions": MockDataInput}

Response

{"data": {"endpointPath": {"node": EndpointPath}}}