Tanium
Identity & securityCredentials form
Query endpoints, sensors, computer groups and actions in Tanium through the Gateway GraphQL API, and deploy or stop actions.
13 actions
| Action | Effect | Data handled | Scope |
|---|---|---|---|
| tanium_get_current_userReturns the user the API token belongs to, the active persona and the personas available to it | read | General | |
| tanium_list_endpointsLists managed endpoints with name, IP, serial number, OS, processor and last logged-in user, from Tanium Data Service | read | Personal data | |
| tanium_get_sensor_readingsReads the values of one or more sensors (such as Installed Applications or Running Services) on endpoints, optionally only on endpoints matching a field filter | read | Personal data | |
| tanium_list_sensorsLists sensors with their description, category, parameters and columns | read | General | |
| tanium_list_computer_groupsLists computer groups (including filter and management rights groups) with their type, expression and content set | read | General | |
| tanium_get_computer_groupGets one computer group by id with its type, membership expression and content set | read | General | |
| tanium_list_package_specsLists package specs (the content actions deploy) with their command, timeouts and parameters | read | General | |
| tanium_list_actionsLists actions with their package, status, schedule, creator and per-status endpoint counts | read | General | |
| tanium_get_actionGets one action by id with its package, schedule, approver and result counts (completed, running, failed and so on) | read | General | |
| tanium_create_actionDeploys a package to the endpoints of a target computer group as a one-time action in an action group | write | General | |
| tanium_stop_actionStops a running action so no more endpoints start it | write | General | |
| tanium_resolve_threat_response_alertAssigns the Resolved status to a Threat Response alert by its GUID | write | General | |
| tanium_run_graphqlRuns any Tanium Gateway GraphQL query or mutation with variables, for data the other tools do not cover (patch, comply, deploy, playbooks and more) | write | Personal data |