---
title: "Create eventfilter"
method: POST
path: "/eventfilter/rules"
tags: ["eventfilters"]
---

# Create eventfilter

`POST /eventfilter/rules`

Create eventfilter.

-  PERMISSIONS: `api_eventfilter:create`

## Request body

- EventfilterCreateRequest — unresolved $ref

## Response `201`

Created

- EventfilterResponse — unresolved $ref

## Other responses

- `400` — Bad Request

## Changes

- **2025-12-14** `1c19dcf99fec` — 1 breaking, 1 info
  - the response's body type/format changed from ``/`` to `object`/`` for status `400`
  - added the optional property `errors` to the response with the `400` status
- **2025-12-12** `24b4a346840a` — 1 breaking, 1 warning
  - the response's body type/format changed from `object`/`` to ``/`` for status `400`
  - removed the optional property `errors` from the response with the `400` status
- **2025-11-26** `bb6f0434af12` — 1 breaking, 1 info
  - the response's body type/format changed from ``/`` to `object`/`` for status `400`
  - added the optional property `errors` to the response with the `400` status
- **2025-09-19** `10a1f7617754` — 1 breaking, 1 warning
  - the response's body type/format changed from `object`/`` to ``/`` for status `400`
  - removed the optional property `errors` from the response with the `400` status

[Change history](https://skmtc.dev/capensis/apis/canopsis-community-api/changes/eventfilter/rules/post.md)

---

[API](https://skmtc.dev/capensis/apis/canopsis-community-api.md) · [All operations](https://skmtc.dev/capensis/apis/canopsis-community-api/llms.txt) · [OpenAPI document](https://skmtc-service-production.skmtc.workers.dev/v1/apis/capensis/canopsis-community-api/revisions/7c842289e811/schema)
