Threat Intel Ingest Management APIs

The Threat Intel Ingest Management API allows you to:
- Upload threat intelligence indicators
- View storage status of threat intelligence ingest service
- View and set the retention period for threat intelligence indicators
For more information about threat intelligence, see About Sumo Logic Threat Intelligence.
Documentation​
To get started with Sumo Logic APIs, see API Authentication, Endpoints, and Security.
Our APIs are built with OpenAPI. You can generate client libraries in several languages and explore automated testing.
To access our API documentation, navigate to the appropriate link based on your Sumo deployment. Deployment types differ based on geographic location and account creation date. If unsure, see Which endpoint should I use?
Required role capabilities​
To use the APIs in this resource, the user or account executing APIs must have the following role capabilities:
- Threat Intel
- View Threat Intel Data Store
- Manage Threat Intel Data Store