Search Filters (Legacy)
  • 10 Sep 2025
  • 1 Minute to read
  • Dark
    Light
  • PDF

Search Filters (Legacy)

  • Dark
    Light
  • PDF

Article summary

Important
This article describes how to use the legacy search feature in ThreatConnect. For instructions on using the search feature introduced in ThreatConnect 7.6, see Searching All Object Types.

Overview

When searching your ThreatConnect® data from the Search drawer, you can use filters to limit the amount of data included in the search results.

Before You Start

User Roles

  • To filter search results from an Organization, your user account can have any Organization role.
  • To filter search results from a Community or Source, your user account can have any Community role except Banned for that Community or Source.

Filter Search Results

The Filters section at the top of the Search drawer (Figure 1) lets you limit search results by owner, type, and location of match.

Figure 1_Search Filters_Legacy_7.6.0

 

Filtering Results by Owner

Use the OWNERS selector to select the owners to include data from in the search results. As you update the selections in the OWNERS selector, the search results will update automatically to reflect your selections.

Filtering Results by Type

Use the TYPES selector to select the object types (Indicator, Group, Tag, Victim, or Case) to include in the search results. As you update the selections in the TYPES selector, the search results will update automatically to reflect your selections.

Limiting Results to Local Matches Only

Turn on the Local Matches Only toggle to include only data known to your owners in the search results. If you turn off the Local Matches Only toggle, the legacy search engine will return objects that may not yet exist in your owners, but do match a pattern for an Indicator type that you could then add to one of your owners.


ThreatConnect® is a registered trademark of ThreatConnect, Inc.

20075-03 v.07.B


Was this article helpful?