swiftsolves-msft / Azure-Sentinel-CiscoUmbrella

Reworked assets for Azure Sentinel using Cisco Umbrella logs as source. Includes logstash config for Cisco Umbrella using Cisco managed AWS S3

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

Azure-Sentinel-CiscoUmbrella

Reworked assets for Azure Sentinel using Cisco Umbrella logs as source. Includes logstash config for Cisco Umbrella using Cisco managed AWS S3. Ported over DNS based Detections and Hunting Queries

About

Reworked assets for Azure Sentinel using Cisco Umbrella logs as source. Includes logstash config for Cisco Umbrella using Cisco managed AWS S3


Languages

Language:PowerShell 100.0%