Disable a SIEM/webhook destination without deleting audit-export history.
POST /v1/siem-webhooks/{destination_id}/disable
POST
/v1/siem-webhooks/{destination_id}/disable
Authorizations
Section titled “Authorizations ”Parameters
Section titled “ Parameters ”Path Parameters
Section titled “Path Parameters ” destination_id
required
string
Request Body required
Section titled “Request Body required ”object
tenant_id
required
string
environment_id
required
string
reason_code
required
string
Responses
Section titled “ Responses ”Destination disabled and audited.
object
schemaVersion
required
tenant_id
required
string
environment_id
required
string
destination_id
required
string
kind
required
enabled
required
boolean
destination_ref
required
Opaque gateway-owned destination handle. Raw http(s) URLs, path/query token shapes, and secret-bearing endpoint material are rejected; real endpoint/token values use write-only reference fields.
string
endpoint_ref
required
Opaque gateway-owned destination handle. Raw http(s) URLs, path/query token shapes, and secret-bearing endpoint material are rejected; real endpoint/token values use write-only reference fields.
string
siem_delivery_status
required
object
status
required
checked_at
required
string format: date-time
reason_code
required
string
last_error
object
reason_code
required
string
retryable
boolean
webhook_status
required
object
status
required
checked_at
required
string format: date-time
reason_code
required
string
last_error
object
reason_code
required
string
retryable
boolean
audit_export_status
required
object
status
required
checked_at
required
string format: date-time
reason_code
required
string
last_error
object
reason_code
required
string
retryable
boolean
audit_export_link
required
object
admin_api_operation
required
duplicates_export_jobs
required
boolean
retention_policy
required
object
metadata_retention_days
required
integer
export_format
required
redaction
required
object
include_payloads
required
boolean
private_payload_egress
required
boolean
secret_material_returned
required
boolean
no_payload_guarantee
required
boolean
audit_material
permissions
required
object
allowed_actions
required
Array
Caller lacks permission to disable this destination.
object
schemaVersion
required
requestId
required
string
status
required
integer
reasonCode
required
string
message
required
string
retryable
required
boolean
machineSafe
required
boolean
redactionStatus
required
field
Optional metadata-only field identifier for validation errors.
string
Destination not found in tenant/environment scope.
object
schemaVersion
required
requestId
required
string
status
required
integer
reasonCode
required
string
message
required
string
retryable
required
boolean
machineSafe
required
boolean
redactionStatus
required
field
Optional metadata-only field identifier for validation errors.
string
Type set in Geist, Source Serif 4, and Departure Mono.