Which Azure Sentinel tables does Cribl Stream natively support? And does it also support sending data to custom tables?
Solved
Which Azure Sentinel tables does Cribl Stream natively support?
Best answer by Shane Daniels
Cribl Stream supports sending to the following native tables in Azure Sentinel using configured Data Collection Rules:
CommonSecurityLog
SecurityEvents
Syslog
WindowsEvents
Cribl Documentation:
https://docs.cribl.io/stream/usecase-azure-webhook/
You can send data to Azure Sentinel custom tables via the Azure Monitor Logs destination. See documentation link below.
https://docs.cribl.io/stream/destinations-azure-monitor-logs/
Enter your E-mail address. We'll send you an e-mail with instructions to reset your password.
