Apps, Solutions, and Collection Integrations - January Release
Enhancements
- Azure SQL Managed Instance app. Updated documentation for the Azure SQL Managed Instance app, including detailed steps for collecting logs, audit logs, and metrics.
- Sumo Logic Audit app. Added monitor alerts for the Sumo Logic Audit app.
- CrowdStrike - Falcon Endpoint Protection app. Updated the sample log messages, dashboards, and monitor alerts for CrowdStrike - Falcon Endpoint Protection app to coordinate it with
EppDetectionSummaryEventdata type. - Azure Container Instances app. Updated the Azure Container Instances app to set the default value for
resource_typetoCONTAINERGROUPSand added the!categoryfield in log query scope. - Windows Source Template. Released the Windows Source Template version 9.1.0, which tags the default
_parserfor logs forwarded to Cloud SIEM. For detailed version information, refer to the changelog file. - Updated OpenTelemetry apps. Redis and HAProxy.