Skip to content
Release: Australia · Updated: 2026-03-12 · Official documentation · View source

Allow List Entries

The Allow List Entries display records created through Block Requests with the Allow action. It lists allowed hash observables with a Success or Expired status and provides key details such as observable type, source, status, active state, date added, and complete activity history, including status and expiration updates from the CrowdStrike platform.

Before you begin

Role required: sn_si.analyst

Procedure

  1. Navigate to All > CrowdStrike Falcon Insight Integration > Allow List Entries.

  2. Select Entry Value.

    For a description of the field values, see Allow and Block Request List Entries.

  3. Select Submit.