Skip to content

Latest commit

 

History

History

sentinel

Folders and files

NameName
Last commit message
Last commit date

parent directory

..
 
 
 
 
 
 
 
 
 
 

Azure Sentinel

stoQ plugin that sends results to Azure Sentinel.

Plugin Classes

Prerequisites

  • Obtain Azure Log Analytics Workspace ID and Key. Directions for obtaining the keys can be found here

Configuration

All options below may be set by:

Required

  • workspaceid [str]: ClientID/ID for the Log Analytics Workspace string

  • workspacekey [str]: Key/Secret for the Log Analytics Workspace string. The primary or secondary shared key may be used.

  • logtype [str]: This field denote the Log Analytics table that the log will send to. Log analytics will automatically append _CL to this value.

Defaults to stoQ.