8.5.2 Extracting Investigation Metadata

Investigation metadata includes XML files that contain the table data for the Alert/Case Investigation.

The sm_extract.sh script invokes a Java tool, which creates these files. You start the script as follows:
sm_extract.sh investconfig
To extract Alert/Case Investigation metadata, execute the sm_extract.sh file.