Hello all, I am new to
Resilient, and am trying to create a work flow which returns multiple entries using the
QRadar Search function. I have set
qradar_query_all_results to
yes. Yet I am only receiving a single incident when I know for a fact there are more.
I have set the
qradar_query_all_results to
yes for both
QRadar Search functions.
Any help would be appreciated.
------------------------------
Derek Hoogewerf
------------------------------