Resource: SearchQuery
Represents a Search Query from a Chronicle user.
JSON representation |
---|
{ "name": string, "metadata": { object ( |
Fields | |
---|---|
name |
Output only. Identifier. The resource name of the SearchQuery. |
metadata |
Optional. Metadata about the search query. |
display_name |
Optional. Name of the query to be shown in the UI. |
query |
Required. The query the user is saving. |
query_id |
Optional. The 16 byte UUID for this query. A base64-encoded string. |
user_id |
Optional. The user ID for this query. |
description |
Optional. Description of the overall query, to be shown in the UI. |
placeholder_names[] |
Optional. Name of query placeholder value, to be shown in the UI. Each element's position corresponds to the description in the placeholder_descriptions field. |
placeholder_descriptions[] |
Optional. Description of the placeholder value, to be shown in the UI. |
query_type |
Optional. The query type. |
natural_language_query |
Optional. If applicable, the natural language query used to generate the UDM Search Query. |
case_insensitive |
Optional. If true, the search was performed in a case-insensitive manner. |
EntryMetadata
Metadata necessary for storage in the UserDataService backend.
JSON representation |
---|
{
"sharing_mode": enum ( |
Fields | |
---|---|
sharing_mode |
Optional. Whether other users in the same customer can read this entry. |
create_time |
Optional. The time that this entry was created. A timestamp in RFC3339 UTC "Zulu" format, with nanosecond resolution and up to nine fractional digits. Examples: |
update_time |
Optional. The last time the entry was updated. A timestamp in RFC3339 UTC "Zulu" format, with nanosecond resolution and up to nine fractional digits. Examples: |
SharingMode
SharingMode specifies how a resource is shared with other users.
Enums | |
---|---|
MODE_PRIVATE |
Only the user that created the resource can read it. |
MODE_SHARED_WITH_CUSTOMER |
Other users within the same customer can read this resource. |
QueryType
The type of the query in the request.
Enums | |
---|---|
QUERY_TYPE_UNSPECIFIED |
The default query type. |
QUERY_TYPE_UDM_QUERY |
Unified Data Model Query. |
QUERY_TYPE_RAW_LOG_QUERY |
Raw Log Query. |
Methods |
|
---|---|
|
Endpoint for adding a new entry to the specified collection of user data |
|
Endpoint for deleting a user data saved query entry |
|
Endpoint for getting a user's Saved query entry |
|
Endpoint for listing the user data saved queries owned by the specified user |
|
Endpoint for updating user data saved query |