Azure-Sentinel/DataConnectors/CEF
Noam Landress 65049fcdd9 make CEF ama installer generic for all forwarder connectors 2022-05-25 12:06:47 +03:00
..
README.md Add read me file 2019-07-23 17:22:38 +03:00
TimeGenerated.py update error message 2020-11-23 15:40:28 +02:00
cef_AMA_troubleshoot.py fix links url 2022-03-28 18:18:23 +03:00
cef_gather_info.py Feature/noamlandress/update os list for cef (#4273) 2022-02-27 18:04:02 +02:00
cef_installer.py Feature/noamlandress/update os list for cef (#4273) 2022-02-27 18:04:02 +02:00
cef_troubleshoot.py Feature/noamlandress/update os list for cef (#4273) 2022-02-27 18:04:02 +02:00

README.md

Common Event Format

Common Event Format (CEF) is an industry standard format on top of Syslog messages, used by many security vendors to allow event interoperability among different platforms. By connecting your CEF logs to Azure Sentinel, you can take advantage of search & correlation, alerting, and threat intelligence enrichment for each log.

CEF Scripts

The scripts found under this directory would be used to install the CEF agent on any Linux machine having rsyslog or syslog-ng.