https://store-images.s-microsoft.com/image/apps.43740.8641d039-0014-4b06-b691-ed2bc190da44.6b7a0348-5e10-4352-a7e8-252aa8e9df87.fb979dc9-676d-4c96-9fc9-e74947af6da7

Custom Logs AMA

Microsoft Sentinel, Microsoft Corporation

Custom Logs AMA

Microsoft Sentinel, Microsoft Corporation

Custom Logs AMA

Note: Please refer to the following before installing the solution:

• Review the solution Release Notes

• There may be known issues pertaining to this Solution, please refer to them before installing.

Many applications log information to text or JSON files instead of standard logging services, such as Windows Event logs, Syslog or CEF. The Custom Logs solution allows you to collect events from files on both Windows and Linux computers and stream them to custom logs tables you created. While streaming the data you can parse and transform the contents using the DCR. After collecting the data, you can apply analytic rules, hunting, searching, threat intelligence, enrichments and more.

NOTE: Use this connector for the following devices: Cisco Meraki, Zscaler Private Access (ZPA), VMware vCenter, Apache HTTP server, Apache Tomcat, Jboss Enterprise application platform, Juniper IDP, MarkLogic Audit, MongoDB Audit, Nginx HTTP server, Oracle Weblogic server, PostgreSQL Events, Squid Proxy, Ubiquiti UniFi, SecurityBridge Threat detection SAP and AI vectra stream.

Data Connectors: 1