Skip to content
Release: Australia · Updated: 2026-03-12 · Official documentation · View source

Allow and Block Request List Entries

Field descriptions for Allow and Block List properties outline how each field controls the behavior of observables when they are added to Allow or Block lists within the CrowdStrike Falcon Insight integration.

FieldDescription
Category ListCrowdStrike category list to which this entry belongs.
SourceIntegration source from which this block request originated.
Entry ValueValue of the indicator to be blocked or allowed.
ObservableRecord associated with this block request
Observable TypeType of observable. Options include: - SHA256 - MD5
Date Added OnTimeStamp when the indicator action was updated in CrowdStrike.
ActiveOption to Indicate whether this block request entry is currently active.
StatusCurrent status of the block request life-cycle.
Requested By UserUser who requested the block or allow operation
Additional InformationAdditional context or details related to the block request