22e3e6e903
* Initial Template Spec Automation * Example Template Spec Input File * Updated code to add Template Spec for parser * Updated Dataconnector meatdata id * Handled Template Spec for AR, HQ and Workbooks * 1PConnector support and techniques, id prop for HQ * Handled the review scenarios * Updated Package tool for comments from Sarath * Tool updates * Updated files * Working Template with Analytical Rule Fix * Updated ResourceId ref of Workbook, AR and HQ * Fixed the solutionId issue * Fixed AnalyticalRule typo * Fixing query frequency, query period issue * Updated code as per Roey's feedback * Incorporated the feedback from Roey * Changed ParserName * Modified Template Spec Name * Added missing status property for Analytics Rule * Workbook Metadata and Analytic Rules Changes * Update createSolution.ps1 * Update createSolution.ps1 * Fixed multiple workbook key issue * Reverted parser updates * Commiting changes for the workbooks and contentId fix * Checking-in the Parser changes for template specs * Changing the function alias of the parser object * Content Types are referenced as varaibles across metadata dependencies and changed Parser content id * Update createSolution.ps1 * Template Spec V2 Tooling Changes * upated analytical rule version to 2.0.0 * read the version property from input file * Copied code to the V2 folder * Handled UIdefinition changes in templating file * Deleted unwanted files * Deleted unwanted files * Removed preview keyword * IsPreview flag for data connector has been handled * Workbook UI Parameter Block commented * Removing workbook name from UI * Versioning change for the content types * Added the logic for the existing function apps title * Function App existing code modified Logic * adding the description validation check * Workbook Versioning change * ISV email property handling in the tool * Playbook TemplateSpec code changes * Updated correct content for Playbooks * Fixed JSON Validation issues * Added missing metadata prop * Added new template spec name code changes * Update Metadata Path * Added resource property for DC content changes * Added customConnectorCount, Removed Junk Resource * Fixed the locale issue in documentation links * Added ReadMe file and Resolve review comments (#5115) * Added ReadMe file and Resolve review comments * Fixed PR validation issue Co-authored-by: Eli Forbes <v-eliforbes@microsoft.com> Co-authored-by: v-sabiraj <v-sabiraj@microsoft.com> Co-authored-by: Sarath Tirumalareddy <tichandr@microsoft.com> Co-authored-by: Sapan Goel <95875056+ms-sapangoel@users.noreply.github.com> Co-authored-by: ashishsyal <89064706+ashishsyal@users.noreply.github.com> |
||
---|---|---|
.. | ||
ARM-Templates | ||
Archive-Log-Tool | ||
Az.SecurityInsights-Samples | ||
AzureDataExplorer | ||
AzureSentinel-DevOps-Board-Template | ||
ConvertYamlToJson | ||
Create-Azure-Sentinel-Solution | ||
CustomLogsIngestion-DCE-DCR | ||
IntrotoKQL | ||
M365-PowerBi Dashboard | ||
MITREATT&CK-LayerGeneration-Notebook | ||
ParameterizedFunction | ||
Playbook-ARM-Template-Generator | ||
PowerShell | ||
RDAP/RDAPQuery | ||
RuleMigration | ||
SIEM-Data-Migration | ||
Sample Code | ||
Sample-Data-Ingest-Tool | ||
Sentinel-All-In-One | ||
Simulators | ||
Transformations-Library | ||
UploadToBlobLookupTables | ||
dashboard | ||
externaldata | ||
stats | ||
ReadMe.md |
ReadMe.md
About
This folder tracks Microsoft Sentinel API integrations, tools and deployment templates that can enable you to easily:
- connect your solutions with Microsoft Sentinel
- deploy in Microsoft Sentinel
- migrate to Microsoft Sentinel
- work easily and connect to different products in Microsoft Sentinel
Here's an inventory of Microsoft Sentinel tools.
Azure Sentinel Tools and Templates
- Azure-Sentinel2Go - Expedites deployment of Microsoft Sentinel lab with pre-recorded datasets