Azure-Sentinel/ASIM
v-atulyadav 2f721cd354 Merge branch 'master' into ASimProcessEvent-Parsers-ASimProcessCreateMicrosoftSysmon.yaml 2024-08-02 11:05:09 +05:30
..
deploy EmptyCustomUnifyingParsers 2023-09-10 22:36:37 +05:30
dev Merge branch 'master' into ASimProcessEvent-Parsers-ASimProcessCreateMicrosoftSysmon.yaml 2024-08-02 11:05:09 +05:30
lib
schemas removed for roles 2024-01-08 10:45:27 +05:30
ASIM parsers list.md
ASimFullDeployment.json
README.md Dhcp Deployment changes 2024-03-12 15:24:51 +05:30

README.md

Deploy ASIM

This template deploys all ASIM parsers. The Advanced Security Information Model (ASIM) enables you to use and create source-agnostic content, simplifying your analysis of the data in your Microsoft Sentinel workspace.

For more information, see Normalization and the Advanced Security Information Model (ASIM)


Deploy to Azure

Deploy to Azure Gov


To deploy a single schema use the buttons below:

ASim Schema Deploy Deploy to Azure Gov
Audit Event Deploy to Azure Deploy to Azure Gov
Authentication Deploy to Azure Deploy to Azure Gov
Dhcp Event Deploy to Azure Deploy to Azure Gov
Dns Deploy to Azure Deploy to Azure Gov
File Event Deploy to Azure Deploy to Azure Gov
Network Session Deploy to Azure Deploy to Azure Gov
Process Event Deploy to Azure Deploy to Azure Gov
Registry Event Deploy to Azure Deploy to Azure Gov
UserManagement Deploy to Azure Deploy to Azure Gov
Web Session Deploy to Azure Deploy to Azure Gov