← All XDRInternals commands

POWERSHELL COMMAND

Get-XdrDatalakeDatabase

Retrieves databases from Microsoft Defender XDR datalake.

View source ↗

Gets a list of databases from the Microsoft Defender XDR datalake. This function includes caching support with a 30-minute TTL to reduce API calls.

Syntax

Get-XdrDatalakeDatabase [-Force] [<CommonParameters>]

Parameters

-Force

Property Value
Type SwitchParameter
Required No
Position named
Pipeline input No
Default False

Bypasses the cache and forces a fresh retrieval from the API.

Examples

Get-XdrDatalakeDatabase
Retrieves the datalake databases using cached data if available.
Get-XdrDatalakeDatabase -Force
Forces a fresh retrieval of the datalake databases, bypassing the cache.

Output

Type: Array

Returns an array of database objects from the datalake.

View source