...
You get
error (401) discovering streams - access denied, invalid bearer token
.The URL Endpoint may not be correct. The default
api_url
setting isapi.crowdstrike.com
, but your customer may be configured with a different endpoint such asapi.us-2.crowdstrike.com
.Update the
api_url
parameter and try again.
You get another error (not 401) regarding
discovering streams.
Check that “Event Streams” is part of the API scope for the credentials provided.
...
Table structure
These are the fields displayed in the tables:
...