CrowdStrike GetHost

CrowdStrike GetHost

Certified
Enterprise Edition

Fetch a CrowdStrike Falcon host by device ID

Fetches the full device record for a single host, identified by its device ID (AID).

yaml
type: io.kestra.plugin.ee.crowdstrike.hosts.GetHost

Fetch a host's details

yaml
id: get_host
namespace: company.team

tasks:
  - id: get_host
    type: io.kestra.plugin.ee.crowdstrike.hosts.GetHost
    clientId: "{{ secret('CROWDSTRIKE_CLIENT_ID') }}"
    clientSecret: "{{ secret('CROWDSTRIKE_CLIENT_SECRET') }}"
    aid: "f4a1c9e2b3d4e5f6a7b8c9d0e1f2a3b4"
Properties

API client ID

Client ID of a CrowdStrike API client with the scopes required by the tasks and triggers being used.

API client secret

Client secret of the CrowdStrike API client. Exchanged for a short-lived OAuth2 Bearer token on every task run and trigger poll; never logged.

Device ID (AID)

CrowdStrike agent ID of the host to fetch.

Defaulthttps://api.crowdstrike.com

CrowdStrike API base URL

Base URL of the CrowdStrike Falcon API for your cloud region (for example: https://api.crowdstrike.com for US-1, https://api.us-2.crowdstrike.com for US-2, https://api.eu-1.crowdstrike.com for EU-1, or https://api.laggar.gcw.crowdstrike.com for US-GOV-1). Defaults to the US-1 endpoint. Using the wrong region for your tenant results in 403 Forbidden responses.

Host device record, as returned by the CrowdStrike API