creating README using new ver. of yaml2arm
This commit is contained in:
Родитель
c842540e4e
Коммит
3cf5b77f02
|
@ -1,6 +1,6 @@
|
|||
# Windows Sysmon ASIM FileEvent Normalization Parser
|
||||
|
||||
This template deploys the ASIM FileEvent schema parser for Windows Sysmon. The parser is a part of the Azure Sentinel Information Mode.
|
||||
This template deploys the ASIM FileEvent schema parser for Windows Sysmon. The parser is a part of the Azure Sentinel Information Model.
|
||||
|
||||
The Azure Sentinel Information Mode (ASIM) enables you to use and create source-agnostic content, simplifying your analysis of the data in your Azure Sentinel workspace.
|
||||
|
||||
|
|
|
@ -1,6 +1,6 @@
|
|||
# Windows Sysmon ASIM FileEvent Normalization Parser
|
||||
|
||||
This template deploys the ASIM FileEvent schema parser for Windows Sysmon. The parser is a part of the Azure Sentinel Information Mode.
|
||||
This template deploys the ASIM FileEvent schema parser for Windows Sysmon. The parser is a part of the Azure Sentinel Information Model.
|
||||
|
||||
The Azure Sentinel Information Mode (ASIM) enables you to use and create source-agnostic content, simplifying your analysis of the data in your Azure Sentinel workspace.
|
||||
|
||||
|
|
|
@ -1,6 +1,6 @@
|
|||
# Microsoft Windows Events Sysmon ASIM ProcessEvent Normalization Parser
|
||||
|
||||
This template deploys the ASIM ProcessEvent schema parser for Microsoft Windows Events Sysmon. The parser is a part of the Azure Sentinel Information Mode.
|
||||
This template deploys the ASIM ProcessEvent schema parser for Microsoft Windows Events Sysmon. The parser is a part of the Azure Sentinel Information Model.
|
||||
|
||||
The Azure Sentinel Information Mode (ASIM) enables you to use and create source-agnostic content, simplifying your analysis of the data in your Azure Sentinel workspace.
|
||||
|
||||
|
|
|
@ -1,6 +1,6 @@
|
|||
# Microsoft Windows Events Sysmon ASIM ProcessEvent Normalization Parser
|
||||
|
||||
This template deploys the ASIM ProcessEvent schema parser for Microsoft Windows Events Sysmon. The parser is a part of the Azure Sentinel Information Mode.
|
||||
This template deploys the ASIM ProcessEvent schema parser for Microsoft Windows Events Sysmon. The parser is a part of the Azure Sentinel Information Model.
|
||||
|
||||
The Azure Sentinel Information Mode (ASIM) enables you to use and create source-agnostic content, simplifying your analysis of the data in your Azure Sentinel workspace.
|
||||
|
||||
|
|
|
@ -1,6 +1,6 @@
|
|||
# Microsoft Windows Events Sysmon ASIM RegistryEvent Normalization Parser
|
||||
|
||||
This template deploys the ASIM RegistryEvent schema parser for Microsoft Windows Events Sysmon. The parser is a part of the Azure Sentinel Information Mode.
|
||||
This template deploys the ASIM RegistryEvent schema parser for Microsoft Windows Events Sysmon. The parser is a part of the Azure Sentinel Information Model.
|
||||
|
||||
The Azure Sentinel Information Mode (ASIM) enables you to use and create source-agnostic content, simplifying your analysis of the data in your Azure Sentinel workspace.
|
||||
|
||||
|
|
Загрузка…
Ссылка в новой задаче