https://store-images.s-microsoft.com/image/apps.9731.ba44884d-f483-45ac-abb2-b929efe9fed8.608c37cd-6211-4d43-b3f8-8fa1361f59f5.17e0b4ba-a535-4c57-bd7c-892f09c529f1

Microsoft Sentinel - Continuous Threat Monitoring for GitHub

Microsoft Corporation - sentinel4github

(3 clasificaciones)

Microsoft Sentinel - Continuous Threat Monitoring for GitHub

Microsoft Corporation - sentinel4github

(3 clasificaciones)

Microsoft Sentinel - Continuous Threat Monitoring for GitHub

Note: Please refer to the following before installing the solution:

• Review the solution Release Notes

• There may be known issues pertaining to this Solution, please refer to them before installing.

The GitHub Solution for Microsoft Sentinel enables you to easily ingest events and logs from GitHub to Microsoft Sentinel using GitHub audit log API and webhooks. This enables you to view and analyze this data in your workbooks, query it to create custom alerts, and incorporate it to improve your investigation process, giving you more insight into your platform security.

Underlying Microsoft Technologies used:

This solution takes a dependency on the following technologies, and some of these dependencies either may be in Preview state or might result in additional ingestion or operational costs:

  1. Codeless Connector Framework (CCF) (used in GitHub Enterprise Audit Log data connector)

  2. Azure Functions

NOTE: Microsoft recommends installation of "GitHubAuditDefinitionV2" (via Codeless Connector Framework). This connector is build on the Codeless Connector Framework (CCF), which uses the Log Ingestion API, which replaces ingestion via the deprecated HTTP Data Collector API. CCF-based data connectors also support Data Collection Rules (DCRs) offering transformations and enrichment.

Important: While the updated connector(s) can coexist with their legacy versions, running them together will result in duplicated data ingestion. You can disable the older versions of these connectors to avoid duplication of data..

Data Connectors: 3, Parsers: 4, Workbooks: 2, Analytic Rules: 14, Hunting Queries: 8

Learn more about Microsoft Sentinel | Learn more about Solutions