diagnostic Audit

Prev Next

Runs a canned diagnostic script. The full version runs about 15 audits, depending on the operating system of the endpoint. These audits may include system, agent info, process API, log, file acquisitions, registry raw, ARP, DNS, route, raw file listing, and config audits. The simplified version consists of only two audits: log and config. The diagnostic script varies slightly by operating system platform.

This audit cannot be imported into a data acquisition script. See Audits That Cannot Be Imported on page 1.

Supported Platforms

Windows, macOS, and Linux

Input Parameters

The following input parameters are available for this audit.

format

Details

Values

Description

Platform

All

Windows, macOS, and Linux environments

Format

String

Valid values are a string of text.

Required?

no

This parameter is not required.

Repeatable?

no

This parameter can be specified only once per audit request. It cannot be repeated.

Valid Values

"standard" "simple"

Valid values are "standard" to acquire full diagnostics for FireEye Customer Support or "simple" to acquire a simplified version of diagnostics. The default is "standard".