Azure-Sentinel/Tools/SIEM-Data-Migration
Javier Soriano a91663a00c link locale fix 2022-05-06 15:07:16 +02:00
..
README.md link locale fix 2022-05-06 15:07:16 +02:00
azuredeploy.json link locale fix 2022-05-06 15:07:16 +02:00
createUiDefinition.json SIEM data migration accelerator 2022-05-06 14:57:29 +02:00
installTools.ps1 SIEM data migration accelerator 2022-05-06 14:57:29 +02:00

README.md

SIEM data migration accelerator

The SIEM data migration accelerator helps you with the setup of the different tools and Azure services needed to perform the migration of historical logs from other SIEM vendors to Azure.

This tool is deployed through an ARM template and performs the following steps:

  • Deploys a Windows Virtual Machine that will be used to move the logs from source to target

  • Downloads and extracts the following tools into the Virtual Machine's desktop:

  • Deploys the target platform that will host your historical logs. To choose from:

    • Azure Storage account

    • Azure Data Explorer cluster and database

    • Azure Monitor Logs workspace (enabled with Microsoft Sentinel)

    • Skip. You also have the option to skip this step if your target platform has been already created.

Usage

To deploy this tool, just click on the link below and follow the wizard steps:

Deploy To Azure