Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · Logic Apps · 📊
| Attribute | Value |
|---|---|
| Connector ID | VeeamConnector |
| Publisher | Microsoft |
| Used in Solutions | Veeam |
| Collection Method | CCF |
| Connector Definition Files | Veeam_ConnectorDefinition.json |
| DCR Definition Files | Veeam_DCR.json |
| CCF Configuration | Veeam_PollerConfig.json |
| CCF Capabilities | APIKey, Paging |
| Microsoft Learn | View on Learn |
Veeam Data Connector allows you to ingest Veeam telemetry data from multiple custom tables into Microsoft Sentinel.
The connector supports integration with Veeam Backup & Replication, Veeam ONE and Coveware platforms to provide comprehensive monitoring and security analytics. The data is collected through Azure Functions and stored in custom Log Analytics tables with dedicated Data Collection Rules (DCR) and Data Collection Endpoints (DCE).
Custom Tables Included:
VeeamMalwareEventsV2_CL: Malware detection events from Veeam Backup & Replication
VeeamSecurityComplianceAnalyzerV2_CL: Security & Compliance Analyzer results collected from Veeam backup infrastructure components
VeeamAuthorizationEventsV2_CL: Authorization and authentication events
VeeamOneTriggeredAlarmsV2_CL: Triggered alarms from Veeam ONE servers
VeeamCovewareFindingsV2_CL: Security findings from Coveware solution
VeeamSessionsV2_CL: Veeam sessions
This connector ingests data into the following tables:
| Table | Transformations | Ingestion API | Lake-Only |
|---|---|---|---|
VeeamAuthorizationEventsV2_CL |
? | ✓ | ? |
VeeamCovewareFindingsV2_CL |
? | ✓ | ? |
VeeamMalwareEventsV2_CL |
? | ✓ | ? |
VeeamOneTriggeredAlarmsV2_CL |
? | ✓ | ? |
VeeamSecurityComplianceAnalyzerV2_CL |
? | ✓ | ? |
VeeamSessionsV2_CL |
? | ✓ | ? |
💡 Tip: Tables with Ingestion API support allow data ingestion via the Azure Monitor Data Collector API, which also enables custom transformations during ingestion.
Resource Provider Permissions:
Custom Permissions:
⚠️ Note: These instructions were automatically generated from the connector's user interface definition file using AI and may not be fully accurate. Please verify all configuration steps in the Microsoft Sentinel portal.
1. Prerequisites
Follow the instructions to configure the Veeam Data Connector.
ℹ️ Note: This data connector depends on parsers based on Kusto Functions to work as expected. These parsers are installed with the Microsoft Sentinel Solution for Veeam.
1. Configuration steps for Veeam Data Connector
2. Coveware API Configuration
Configure Coveware API credentials for security findings data collection.
3. Veeam API Configuration
Configure Veeam API credentials for all Veeam services (Malware Events, Security Analyzer, and Authorization Events).
4. Veeam ONE API Configuration
Configure Veeam ONE API credentials for triggered alarms data collection.
5. Connect
Enable the Veeam Data Connector.
Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · Logic Apps · 📊