Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · Logic Apps · 📊
| Attribute | Value |
|---|---|
| Connector ID | PRODAFTUstaATPCCPDefinition |
| Publisher | PRODAFT |
| Used in Solutions | PRODAFT USTA - Account Takeover Prevention |
| Collection Method | CCF |
| Connector Definition Files | PRODAFTUstaATP_ConnectorDefinition.json |
| DCR Definition Files | PRODAFTUstaATP_DCR.json |
| CCF Configuration | PRODAFTUstaATP_PollingConfig.json |
| CCF Capabilities | APIKey, Paging |
The PRODAFT USTA Account Takeover Prevention data connector ingests compromised-credential tickets from the PRODAFT USTA platform into Microsoft Sentinel. Sensitive values are redacted at ingestion: plaintext passwords are never stored — only password strength signals (score and length) are retained for triage.
This connector ingests data into the following tables:
| Table | Transformations | Ingestion API | Lake-Only |
|---|---|---|---|
PRODAFTUstaCompromisedCredentials_CL |
? | ✓ | ? |
💡 Tip: Tables with Ingestion API support allow data ingestion via the Azure Monitor Data Collector API, which also enables custom transformations during ingestion.
Resource Provider Permissions:
Custom Permissions:
⚠️ Note: These instructions were automatically generated from the connector's user interface definition file using AI and may not be fully accurate. Please verify all configuration steps in the Microsoft Sentinel portal.
1. Connect PRODAFT USTA Account Takeover Prevention to Microsoft Sentinel
Enter your USTA base URL and a long-lived API key, then select Connect. The connector authenticates to USTA with the Authorization: Bearer <api-key> header and polls every minute. To load history from before the connection time, deploy the PRODAFTUstaATP-Backfill playbook shipped with this solution.
Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · Logic Apps · 📊