Ingest CEF logs from Network devices to Microsoft Sentinel - 1hr Tutorial

Поделиться
HTML-код
  • Опубликовано: 9 сен 2024
  • Microsoft Sentinel Training
    What is Microsoft Sentinel? - • Microsoft Sentinel | W...
    Get started with Microsoft Sentinel - • Microsoft Sentinel | G...
    How to Set up Microsoft Sentinel? - • Setup Microsoft Sentin...
    What is Microsoft Sentinel Data Connector? • Microsoft Sentinel Dat...
    Enabling Data Connector - • Microsoft Sentinel Ena...
    Enable Microsoft Entra Id Data Connector - • Microsoft Sentinel Ena...
    Enable Microsoft Defender XDR Connector - • Microsoft Sentinel Ena...
    Enable Microsoft Defender Threat Intelligence Connector - • Microsoft Sentinel Int...
    Ingest logs from Windows Machines to Microsoft Sentinel - • Microsoft Sentinel Win...
    Ingest logs from Linux Machines to Microsoft Sentinel - • Microsoft Sentinel Ing...
    Ingest logs from Network devices Routers, switches, Firewall and Proxy to Microsoft Sentinel - • Ingest CEF logs from N...
    Playlist -
    What is SIEM Solution? | Security Information and Event Management - • What is SIEM Solution?...
    SIEM Solution | What are data types in SIEM solution? - • SIEM Solution | What a...
    SIEM solution | How data ingestion works in SIEM solutions? - • SIEM solution | How da...
    SIEM Solution | How data is stored in SIEM solutions? - • SIEM Solution | How da...
    SIEM Solution | How data parsing works in SIEM solutions? - • SIEM Solution | How da...
    SIEM Solution | Data Normalization and Indexing - • SIEM Solution | Data N...
    SIEM Solution | What is data correlation in SIEM solutions? - • SIEM Solution | What i...
    SIEM Solution | How data enrichment works in SIEM solutions? - • SIEM Solution | How da...
    Microsoft Azure Log Analytics Worksapce - • Microsoft Azure Log An...
    Microsoft Azure Log Analytics Workspace | Detailed Tutorial - • Microsoft Azure Log An...
    Azure Monitor | What Azure Monitor Agent? - • Azure Monitor | What i...
    Azure Monitor | Data Collection Rules | Detailed Video - • Azure Monitor | Data C...
    Azure Monitor | Deploy Azure Monitor Agent on Windows Servers | Data Collection Rule | Tutorial - • Azure Monitor | Deploy...
    Azure Monitor | Custom Windows Logs Collection | Azure Monitor Agent - • Azure Monitor | Custom...
    Azure Monitor | Deploy Azure Monitor Agent on Linux | Data Collection Rule | Tutorial - • Azure Monitor | Deploy...
    What is Azure ARC? - • What is Azure ARC?
    Azure ARC for Server | Deployment | Getting started - • Azure ARC for Server |...
    Azure ARC Onboard Windows Servers | Detailed Video - • Azure ARC Onboard Wind...
    Automate Server Onboarding - Azure Arc - • Automate Server Onboar...
    Azure Arc | Onboard Windows Servers from Group Policy Object - • Azure Arc | Onboard Wi...
    Azure Arc-Enabled Servers | Linux Server Onboarding - • Azure Arc-Enabled Serv...
    Azure Arc- Enabled Servers | Portal walkthrough and Architecture - • Azure Arc- Enabled Ser...

Комментарии • 8

  • @ganeshdaskan4967
    @ganeshdaskan4967 7 дней назад

    Perfect !!!!!

  • @Farid-ElMassry
    @Farid-ElMassry Месяц назад

    Good Job. Thanks

  • @supreetmonga
    @supreetmonga День назад

    Do you have any Video which would show Real life Examples of Ms Sentinel ?

  • @dathasai9805
    @dathasai9805 Месяц назад

    Helped me a lot. Appreciate your hard work.

  • @secanshu-vg4ur
    @secanshu-vg4ur Месяц назад

    Thanks for the detailed video.
    How come data will be normalized because different network devices will have different log formats and will be sending to the same table i.e. same schema.
    Also, in my case I don't have CEF connector installed and all the network devices sending logs to the same table i.e. syslog and the data is a mess because of no normalization.
    I want to achieve something like a different table for a different log format from network devices.

    • @ConceptsWork
      @ConceptsWork  Месяц назад

      Detailed reply has been sent to your email, thank you for watching our content.

  • @pradeepr9502
    @pradeepr9502 Месяц назад

    Can you azure stack hci series