Skip to content
Release: Australia · Updated: 2026-03-12 · Official documentation · View source

Update Sensor activity

The Update Sensor workflow activity updates the sensor to isolate hosts or endpoints.

The Update Sensor activity can be used with any workflow to isolate hosts or endpoints.

Results

Possible results for this activity are:

ResultDescription
SuccessUpdated sensor.
FailureUnable to update sensor. More error information is available in the activity output error.

Input variables

Input variables determine the initial behavior of the activity.

VariableDescription
api_tokenCarbon Black API key.
use_mid_serverDetermines whether the REST activity uses the MID server to interact with Carbon Black or not.
endpoint_baseBase URL of the Carbon Black API.
sensor_idSensor identifier.
sensor_detailDescription of the Carbon Black sensor in JSON format.

Output variables

The output variables contain data that can be used in subsequent activities.

VariableDescription
status_codeDetermines if the request was successful. If not, displays an HTTP error code and message.

Parent Topic:Security Operations Carbon Black Integration - Isolate Host Flow