Skip to content

Latest commit

 

History

History
28 lines (16 loc) · 1.27 KB

README.md

File metadata and controls

28 lines (16 loc) · 1.27 KB

Azure Sentinel

stoQ plugin that sends results to Azure Sentinel.

Plugin Classes

Prerequisites

  • Obtain Azure Log Analytics Workspace ID and Key. Directions for obtaining the keys can be found here

Configuration

All options below may be set by:

Required

  • workspaceid [str]: ClientID/ID for the Log Analytics Workspace string

  • workspacekey [str]: Key/Secret for the Log Analytics Workspace string. The primary or secondary shared key may be used.

  • logtype [str]: This field denote the Log Analytics table that the log will send to. Log analytics will automatically append _CL to this value.

Defaults to stoQ.