Configure artifact types

You can create and edit artifact types and control whether Orchestration & Automation shows a relationship between incidents when they contain the same artifact, and test your custom artifacts.

An artifact is data that supports or relates to an incident. Orchestration & Automation organizes artifacts by type, such as file name, MAC address, suspicious URL, MD5 and SHA1 file hashes, and more. An artifact can also have an attachment, such as an email, log file, and malware sample.

The Artifacts tab lists the type of artifacts available in the Orchestration & Automation application. There are a number of artifact types provided by the system. In addition, you can create your own custom artifact types to better organize artifacts for your environment.